Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A content spoofing vulnerability in the following components allows to render html pages containing arbitrary plain text content, which might fool an end user: UI add-on for SAP NetWeaver (UI_Infra, 1.0), SAP UI Implementation for Decoupled Innovations (UI_700, 2.0): SAP NetWeaver 7.00 Implementation, SAP User Interface Technology (SAP_UI 7.4, 7.5, 7.51, 7.52). There is little impact as it is not possible to embed active contents such as JavaScript or hyperlinks.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SAP UI、NetWeaver和UI_Infra 输入验证错误漏洞
Vulnerability Description
SAP UI add-on for NetWeaver等都是德国思爱普(SAP)公司的使用在不同产品中的UI组件。 SAP UI、NetWeaver和UI_Infra中存在输入验证漏洞。攻击者可利用该漏洞欺骗终端用户。以下产品和版本受到影响:SAP UI 7.4,7.5,7.51,7.52;NetWeaver 7.0;UI_Infra 1.0版本(netweaver)。
CVSS Information
N/A
Vulnerability Type
N/A