SAP NetWeaver Enterprise Portal does – versions 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, not sufficiently encode user-controlled inputs over the network, resulting in reflected Cross-Site Scripting (XSS) vulnerability, therefore changing the scope of the attack. This leads to limited impact on confidentiality and integrity of data. (CVSS:4.3) (Last Update:2022-07-20)Latest security vulnerabilities (Cross Site Scripting (XSS)) (CVSS score >= 4) Read More

ZERO Days Security
Pwn2Own Vancouver 2023 – The Full Schedule
Welcome to Pwn2Own Vancouver for 2023! This year’s event promises some exciting research as we have 19 entries targeting nine different targets – including two