SAP Note 1505976 - Webdocs:Unauthorized Content Modification & Session Handling

Component : Document management -

Solution : https://service.sap.com/sap/support/notes/1505976 (SAP Service marketplace login required)

Key words :
alias cvaw/logoff   text logoff   lngth 11   package cvaw   language english   object type wappmaintain, potentially obtain authentication information fromother legitimate users, reflected cross-site scripting issue, reflected cross-site scripting attack, reflected cross-site scripting, modify displayed application content, cross site scripting, modify displayed content, sufficiently encode input, maintain otr texts

Related Notes :

1532777
1509753Webdocs:XSRF Protection for BSP Application WebDocuments.