Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-8762 | SAP NetWeaver Enterprise Portal versions - 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, does not sufficiently encode user related data, resulting in Stored Cross-Site Scripting (XSS) vulnerability. This would allow an attacker with administrative privileges to store a malicious script on the portal. The execution of the script content by a victim registered on the portal could compromise the confidentiality and integrity of portal content. |
No history.
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2024-08-03T18:16:22.533Z
Reserved: 2020-12-30T00:00:00.000Z
Link: CVE-2021-21489
No data.
Status : Modified
Published: 2021-09-14T12:15:08.120
Modified: 2026-06-17T03:35:40.333
Link: CVE-2021-21489
No data.
OpenCVE Enrichment
No data.
-
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
EUVD