CVE-2014-1964
https://notcve.org/view.php?id=CVE-2014-1964
Cross-site scripting (XSS) vulnerability in the Integration Repository in the SAP Exchange Infrastructure (BC-XI) component in SAP NetWeaver allows remote attackers to inject arbitrary web script or HTML via vectors related to the ESR application and a DIR error. Vulnerabilidad de XSS en Integration Repository en el componente SAP Exchange Infrastructure (BC-XI) en SAP NetWeaver permite a atacantes remotos inyectar script Web o HTML arbitrarios a través de vectores relacionados con la aplicación ESR y un error DIR. • http://scn.sap.com/docs/DOC-8218 http://secunia.com/advisories/56947 https://erpscan.io/advisories/erpscan-14-005-sap-netweaver-dir-error-xss https://exchange.xforce.ibmcloud.com/vulnerabilities/91095 https://service.sap.com/sap/support/notes/1788080 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •