← back
CVE-2018-2505

CVE-2018-2505

EPSS 1.0%
SAP Commerce does not sufficiently validate user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability in storefronts that are based on the product. Fixed in versions (SAP Hybris Commerce, versions 6.2, 6.3, 6.4, 6.5, 6.6, 6.7).

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →