SAP Note 1505976 - Webdocs:Unauthorized Content Modification & Session Handling

Composant : Document management -

Solution : https://service.sap.com/sap/support/notes/1505976 (Connexion à SAP Service Marketplace requise)

Mots Clés :
alias cvaw/logoff   text logoff   lngth 11   package cvaw   language english   object type wappmaintain, potentially obtain authentication information fromother legitimate users, reflected cross-site scripting issue, reflected cross-site scripting attack, reflected cross-site scripting, modify displayed application content, cross site scripting, modify displayed content, sufficiently encode input, maintain otr texts

Notes associées :

1532777
1509753Webdocs:XSRF Protection for BSP Application WebDocuments.