SAP Note 710133 - Security Note: Cross Site Scripting in SAP BC

Component : Business Connector -

Solution : https://service.sap.com/sap/support/notes/710133 (SAP Service marketplace login required)

Key words :
xmlattr option additionally escapes '=' signs, /developerworks/web/library/wa-secxss/, dynamically generate html pages based, produce invalid xml documents -, browser based web application, cross-site scripting attacks, dynamic server pages, cross site scripting, dynamically generated content, symptom security fix

Related Notes :

908349Security Note: Phishing in SAP BC
906401Security Note: Path Traversal in SAP BC