CVE-2011-5263: XSS
Published Feb 12, 2013
·Updated
Cross-site scripting (XSS) vulnerability in RetrieveMailExamples in SAP NetWeaver 7.30 and earlier allows remote attackers to inject arbitrary web script or HTML via the server parameter.
Affected Software
9 affected components
SAP NetWeaver=7.02
SAP NetWeaver=7.0-sp15
SAP NetWeaver=7.0-ehp2
SAP NetWeaver=7.01
SAP NetWeaver=7.0-ehp1
SAP NetWeaver=7.0-sp8
SAP NetWeaver<=7.30
SAP NetWeaver=7.10
SAP NetWeaver=7.0
Event History
Feb 12, 2013
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-5263?
CVE-2011-5263 is classified as a medium-severity vulnerability due to its potential for cross-site scripting attacks.
2
How do I fix CVE-2011-5263?
To mitigate CVE-2011-5263, update SAP NetWeaver to a version that addresses this vulnerability.
3
What are the affected versions for CVE-2011-5263?
CVE-2011-5263 affects SAP NetWeaver versions 7.30 and earlier, including versions such as 7.0 and 7.02.
4
What type of vulnerability is CVE-2011-5263?
CVE-2011-5263 is a cross-site scripting (XSS) vulnerability that allows attackers to inject malicious scripts.
5
Who is impacted by CVE-2011-5263?
Organizations using vulnerable versions of SAP NetWeaver are at risk of exploitation through CVE-2011-5263.