SAP Note 1676722 - Unauthorized modification of BSP in Webdocuments

Composant : Warranty Online WebFrontend - Dealer Portal

Solution : https://service.sap.com/sap/support/notes/1676722 (Connexion à SAP Service Marketplace requise)

Mots Clés :
prerequisites webdynpro class dpwty_cl_ui_claim_detail, sufficiently encode output parameters, cross-site scripting issue, terms cross-site scripting, modify displayed application content, potentially obtain authentification information, cross-site scripting, -a-dp reason, malicious users allowing, legitimate users

Notes associées :

1582870ABAP XSS Escaping Support
1582867Security options (XSS) for ESCAPE