Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-28547 | Due to lack of proper input validation, BSP application (CRM_BSP_FRAME) - versions 700, 701, 702, 731, 740, 750, 751, 752, 75C, 75D, 75E, 75F, 75G, 75H, allow malicious inputs from untrusted sources, which can be leveraged by an attacker to execute a Reflected Cross-Site Scripting (XSS) attack. As a result, an attacker may be able to hijack a user session, read and modify some sensitive information. |
Thu, 20 Mar 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2025-03-20T20:21:30.580Z
Reserved: 2023-01-25T15:46:55.581Z
Link: CVE-2023-24529
Updated: 2024-08-02T10:56:04.273Z
Status : Modified
Published: 2023-02-14T04:15:12.977
Modified: 2024-11-21T07:48:03.890
Link: CVE-2023-24529
No data.
OpenCVE Enrichment
No data.
EUVD