Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-40840 | In SAP Enable Now - versions WPB_MANAGER 1.0, WPB_MANAGER_CE 10, WPB_MANAGER_HANA 10, ENABLE_NOW_CONSUMP_DEL 1704, the X-FRAME-OPTIONS response header is not implemented, allowing an unauthenticated attacker to attempt clickjacking, which could result in disclosure or modification of information. |
No history.
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2024-09-06T20:33:35.907Z
Reserved: 2023-06-27T21:23:26.299Z
Link: CVE-2023-36920
Updated: 2024-08-02T17:01:10.074Z
Status : Modified
Published: 2023-10-30T17:15:52.260
Modified: 2026-06-17T06:07:22.890
Link: CVE-2023-36920
No data.
OpenCVE Enrichment
No data.
-
CWE-1021
Improper Restriction of Rendered UI Layers or Frames
EUVD