CVE-2020-6217: XSS
SAP NetWeaver AS ABAP Business Server Pages Test Application IT00, versions 700, 701, 702, 730, 731, 740, 750, 751, 752, 753, 754, does not sufficiently encode user-controlled inputs, resulting in reflected Cross-Site Scripting (XSS) vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is SAP NetWeaver AS ABAP Business Server Pages Test Application IT00?
SAP NetWeaver AS ABAP Business Server Pages Test Application IT00 is a software component of SAP NetWeaver AS ABAP that provides a testing environment for Business Server Pages applications.
What versions of SAP NetWeaver AS ABAP Business Server Pages Test Application IT00 are affected?
Versions 700, 701, 702, 730, 731, 740, 750, 751, 752, 753, and 754 of SAP NetWeaver AS ABAP Business Server Pages Test Application IT00 are affected.
What is the severity of CVE-2020-6217?
CVE-2020-6217 has a severity value of 6.1, which is considered medium.
What is the CWE classification of CVE-2020-6217?
CVE-2020-6217 is classified under CWE-79, which is Cross-Site Scripting (XSS).
How do I fix the reflected Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver AS ABAP Business Server Pages Test Application IT00?
To fix the reflected Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver AS ABAP Business Server Pages Test Application IT00, apply the necessary patches provided by SAP and follow their recommended mitigation steps.