Cross-Site Scripting (XSS) vulnerability in SAP Business Connector
Vulnerability Description
The Resource Settings page allows a high privilege attacker to load exploitable payload to be stored and reflected whenever a User visits the page. In a successful attack, some information could be obtained and/or modified. However, the attacker does not have control over what information is obtained, or the amount or kind of loss is limited.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-30215
Credits & Attribution
No credits recorded in the NVD database.
References
More from SAP_SE
View All →Affected Vendor
SAP_SE
View all reports →