CVE-2021-33665: XSS
SAP NetWeaver Application Server ABAP (Applications based on SAP GUI for HTML), versions - KRNL64NUC - 7.49, KRNL64UC - 7.49,7.53, KERNEL - 7.49,7.53,7.77,7.81,7.84, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-33665?
CVE-2021-33665 is a Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Application Server ABAP (Applications based on SAP GUI for HTML) versions KRNL64NUC - 7.49, KRNL64UC - 7.49,7.53, KERNEL - 7.49,7.53,7.77,7.81,7.84.
How does CVE-2021-33665 occur?
CVE-2021-33665 occurs due to insufficient encoding of user-controlled inputs in SAP NetWeaver Application Server ABAP (Applications based on SAP GUI for HTML) versions KRNL64NUC - 7.49, KRNL64UC - 7.49,7.53, KERNEL - 7.49,7.53,7.77,7.81,7.84.
What is the severity of CVE-2021-33665?
CVE-2021-33665 has a severity level of medium (5.4).
How can I fix CVE-2021-33665?
To fix CVE-2021-33665, it is recommended to apply the necessary patches or updates provided by SAP.
Where can I find more information about CVE-2021-33665?
You can find more information about CVE-2021-33665 at the following references: [link 1](https://launchpad.support.sap.com/#/notes/3028370), [link 2](https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=578125999).