SAP NetWeaver AS Java Cross-site Scripting Vulnerability
Description
(:A cross-site scripting was reported in SAP NetWeaver Portal.:A remote attacker could exploit it by enticing their victim into following a specially crafted link in order to execute arbitrary JavaScript or HTML code.)
Vulnerable Products
Vulnerable Software: NetWeaver (SAP) - 7.4
Solution
SAP has released security note 2256178 which fixes this vulnerability.