CVE Database
/

CVE-2022-35226

Back to search

CVE-2022-35226

Published: Oct 11, 2022

Modified: Aug 3, 2024

PUBLISHED

Description

SAP Data Services Management allows an attacker to copy the data from a request and echoed into the application's immediate response, it will lead to a Cross-Site Scripting vulnerability. The attacker would have to log in to the management console to perform such as an attack, only few of the pages are vulnerable in the DS management console.

VendorProductVersions

SAP SE

SAP Data Services Management Console

affected
4.2
affected
4.3

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now