SAP Note 1684640 - Unauthorized modification in BSP applications in IS-M

Composant : Industry-Specific Component Media -

Solution : https://service.sap.com/sap/support/notes/1684640 (Connexion à SAP Service Marketplace requise)

Mots Clés :
sufficiently encode output parameters, cross-site scripting issue, terms cross site scripting, potentially obtain authentification information, modify displayed application content, cross-site scripting, ismcampaignpick ismsd_socreate ismcampaignmgnt, business functions med_msd_1, authentication information, malicious user

Notes associées :

1671470
1582870ABAP XSS Escaping Support
1582867Security options (XSS) for ESCAPE
1040672Kampagnengestützte Auftragsanlage: Erweiterte Funktionalität