CVE-2022-41208: XSS
Due to insufficient input validation, SAP Financial Consolidation - version 1010, allows an authenticated attacker with user privileges to alter current user session. On successful exploitation, the attacker can view or modify information, causing a limited impact on confidentiality and integrity of the application.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-41208?
CVE-2022-41208 has a low severity impact on the confidentiality and integrity of the SAP Financial Consolidation application.
How do I fix CVE-2022-41208?
To fix CVE-2022-41208, ensure that your SAP Financial Consolidation application is updated to the latest version that addresses this vulnerability.
Who is affected by CVE-2022-41208?
CVE-2022-41208 affects users of SAP Financial Consolidation version 1010 who possess authenticated user privileges.
What can an attacker do if CVE-2022-41208 is exploited?
If CVE-2022-41208 is exploited, an attacker can alter the current user session, potentially viewing or modifying sensitive information.
Is CVE-2022-41208 a remote or local vulnerability?
CVE-2022-41208 is a local vulnerability requiring authenticated user privileges to exploit.