CVE-2023-0013: Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver AS for ABAP and ABAP Platform
The ABAP Keyword Documentation of SAP NetWeaver Application Server - versions 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, for ABAP and ABAP Platform does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability. On successful exploitation an attacker can cause limited impact on confidentiality and integrity of the application.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-0013?
The severity of CVE-2023-0013 is medium with a severity value of 6.1.
Which versions of SAP NetWeaver Application Server ABAP are affected by CVE-2023-0013?
Versions 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, and 757 of SAP NetWeaver Application Server ABAP are affected by CVE-2023-0013.
What is the vulnerability type of CVE-2023-0013?
CVE-2023-0013 is a Cross-Site Scripting (XSS) vulnerability.
How can CVE-2023-0013 be exploited?
CVE-2023-0013 can be exploited through successful execution of a Cross-Site Scripting (XSS) attack.
Are there any references available for CVE-2023-0013?
Yes, you can find references for CVE-2023-0013 at the following links: [Reference 1](https://launchpad.support.sap.com/#/notes/3283283) and [Reference 2](https://www.sap.com/documents/2022/02/fa865ea4-167e-0010-bca6-c68f7e60039b.html).