SAP Note 1673853 - Unauthorized modification in BSP application in IS-HER-CM

Component : Student Lifecycle Management -

Solution : https://service.sap.com/sap/support/notes/1673853 (SAP Service marketplace login required)

Key words :
sufficiently encode output parameters, cross-site scripting issue, terms cross-site scripting, modify displayed application content, potentially obtain authentification information, cross-site scripting, prerequisites bsp pages, relevant support package, authentication information, malicious user

Related Notes :

1582870ABAP XSS Escaping Support
1582867Security options (XSS) for ESCAPE
1491236