SAP Enterprise Portal – versions 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability. This attack can be used to non-permanently deface or modify portal content. The execution of script content by a victim registered on the portal could compromise the confidentiality and integrity of victim?s web browser session. (CVSS:4.3) (Last Update:2023-01-30) Latest security vulnerabilities (Cross Site Scripting (XSS)) (CVSS score >= 4)

ZERO Days Security
Pwn2Own Vancouver 2023 – The Full Schedule
Welcome to Pwn2Own Vancouver for 2023! This year’s event promises some exciting research as we have 19 entries targeting nine different targets – including two