CVE-2019-0361: XSS
Published Sep 10, 2019
·Updated
SAP Supplier Relationship Management (Master Data Management Catalog - SRMMDMCAT, before versions 3.73, 7.31, 7.32) does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.
Affected Software
3 affected components
SAP Supplier Relationship Management=3.73
SAP Supplier Relationship Management=7.31
SAP Supplier Relationship Management=7.32
Event History
Sep 10, 2019
CVE Published
via MITRE·04:09 PM
Data Sourced
via MITRE·04:09 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-0361?
The severity of CVE-2019-0361 is medium.
2
How does the CVE-2019-0361 vulnerability affect SAP Supplier Relationship Management (SRM)?
The CVE-2019-0361 vulnerability affects SAP Supplier Relationship Management (SRM) versions 3.73, 7.31, and 7.32.
3
What is the impact of the CVE-2019-0361 vulnerability?
The CVE-2019-0361 vulnerability allows for Cross-Site Scripting (XSS) attacks.
4
How can I fix the CVE-2019-0361 vulnerability in SAP Supplier Relationship Management (SRM)?
To fix the CVE-2019-0361 vulnerability in SAP Supplier Relationship Management (SRM), update to versions 3.73 PL22, 7.31 PL23, or 7.32 PL09.
5
Where can I find more information about the CVE-2019-0361 vulnerability?
More information about the CVE-2019-0361 vulnerability can be found at the following references: [1] [2].