CVE-2023-23852: XSS
Published Feb 14, 2023
·Updated
SAP Solution Manager (System Monitoring) - version 720, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.
Affected Software
1 affected component
SAP Solution Manager=720
Event History
Feb 14, 2023
CVE Published
via MITRE·03:12 AM
Data Sourced
via MITRE·03:12 AM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2023-23852?
The severity of CVE-2023-23852 is medium.
2
What software is affected by CVE-2023-23852?
SAP Solution Manager version 720 is affected by CVE-2023-23852.
3
What is the vulnerability type of CVE-2023-23852?
CVE-2023-23852 is a Cross-Site Scripting (XSS) vulnerability.
4
How can I fix CVE-2023-23852?
To fix CVE-2023-23852, update to a patched version of SAP Solution Manager.
5
Where can I find more information about CVE-2023-23852?
You can find more information about CVE-2023-23852 in the SAP Support Portal and the SAP document linked in the references.