SAP Note 1657210 - Unauthorized mod. of displayed content in Web.Req. toolbox

Composant : Service Request -

Solution : https://service.sap.com/sap/support/notes/1657210 (Connexion à SAP Service Marketplace requise)

Mots Clés :
crm web request toolbox, sufficiently encode output parameters, cross site scripting issue, terms cross site scripting, potentially obtain authentification information, modify displayed application content, cross-site scripting, - crm_tbox_uploadthe design defines, malicious user allowing, malicious user

Notes associées :

1582870ABAP XSS Escaping Support
1582867Security options (XSS) for ESCAPE