CVE-2014-9569
https://notcve.org/view.php?id=CVE-2014-9569
Multiple cross-site scripting (XSS) vulnerabilities in SAP NetWeaver Business Client (NWBC) for HTML 3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) title or (2) roundtrips parameter, aka SAP Security Note 2051285. Múltiples vulnerabilidades de XSS en SAP NetWeaver Business Client (NWBC) para HTML 3.0 permiten a atacantes remotos inyectar secuencias de comandos web o HTML arbitrarios a través del parámetro (1) title o (2) roundtrips, también conocido como SAP Security Note 2051285. • http://secunia.com/advisories/62017 http://www.securitytracker.com/id/1031509 http://www.senseofsecurity.com.au/advisories/SOS-14-005 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •