Vulnerabilities (CVE)

Filtered by vendor Sap Subscribe
Filtered by product Application Interface
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-29112 1 Sap 1 Application Interface 2024-02-28 N/A 5.4 MEDIUM
The SAP Application Interface (Message Monitoring) - versions 600, 700, allows an authorized attacker to input links or headings with custom CSS classes into a comment. The comment will render links and custom CSS classes as HTML objects. After successful exploitations, an attacker can cause limited impact on the confidentiality and integrity of the application.