SAP Customer Relationship Management(CRM)是德国思爱普(SAP)公司的一套客户关系管理解决方案。该方案包括销售管理、营销管理、客户服务系统等模块。 SAP Customer Relationship Management中存在跨站脚本漏洞。该漏洞源于WEB应用缺少对客户端数据的正确验证。攻击者可利用该漏洞执行客户端代码。以下产品及版本受到影响:SAP Customer Relationship Management S4CRM 1.0之前版本和2.0之前版本;BBP
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SAP SE | SAP Customer Relationship Management (Email Management - S4CRM) | < 1.0 | - |
|
| SAP SE | SAP Customer Relationship Management (Email Management - BBPCRM) | < 7.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2019-0380 | SAP Landscape Management 日志信息泄露漏洞 | |
| CVE-2019-0381 | SAP SQL Anywhere、SAP IQ和Dynamic Tier 安全漏洞 | |
| CVE-2019-0379 | SAP NetWeaver Process Integration 数据伪造问题漏洞 | |
| CVE-2019-0378 | SAP BusinessObjects Business Intelligence Platform 跨站脚本漏洞 | |
| CVE-2019-0377 | SAP BusinessObjects Business Intelligence Platform 跨站脚本漏洞 | |
| CVE-2019-0376 | SAP BusinessObjects Business Intelligence Platform 跨站脚本漏洞 | |
| CVE-2019-0375 | SAP BusinessObjects Business Intelligence Platform 跨站脚本漏洞 | |
| CVE-2019-0374 | SAP BusinessObjects Business Intelligence Platform 跨站脚本漏洞 | |
| CVE-2019-0370 | SAP Financial Consolidation 安全漏洞 | |
| CVE-2019-0369 | SAP Financial Consolidation 跨站脚本漏洞 | |
| CVE-2019-0367 | SAP NetWeaver Process Integration 安全漏洞 |
No comments yet