← back
CVE-2019-0369

CVE-2019-0369

EPSS 0.5%
SAP Financial Consolidation, before versions 10.0 and 10.1, does not sufficiently encode user-controlled inputs, which allows an attacker to execute scripts by uploading files containing malicious scripts, leading to reflected cross site scripting vulnerability.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →