CVEs (2)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Sap 3Document Management System ErpS4coreJun 17, 2026 Feb 10, 2026 N/A· v4 6.1 MEDIUM· v3 N/A· v2 The BSP applications allow an unauthenticated user to inject malicious script content via user-controlled URL parameters that are not sufficiently sanitized. When a victim accesses a crafted URL, the injected script is e...Show more |
1Sap 3Document Management System ErpS4coreJun 17, 2026 Feb 10, 2026 N/A· v4 6.1 MEDIUM· v3 N/A· v2 The BSP applications allow an unauthenticated user to manipulate user-controlled URL parameters that are not sufficiently validated. This could result in unvalidated redirection to attacker-controlled websites, leading t...Show more |