cb
cvebase
.
~
/
products
/
sap
/
sap_commerce
Search CVEs, products, detections…
⌘K
pipeline live
Digest
Docs
Home
/
Products
/
sap
/
Sap Commerce
Sap Commerce vulnerabilities
1 known vulnerability affecting
sap/sap_commerce
.
Track
Version
All versions
Total CVEs
1
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM
1
Vulnerabilities
Sort
Most important
Highest Priority
Highest EPSS
Highest CVSS
Newest
Oldest
Page 1 of 1
CVE-2018-2505
P4
MEDIUM
CVSS 6.1
v6.2
·
v6.3
+4 more
2018-12-11
CVE-2018-2505 [MEDIUM] CWE-79 CVE-2018-2505: SAP Commerce does not sufficiently validate user-controlled inputs, resulting in Cross-Site Scriptin SAP Commerce does not sufficiently validate user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability in storefronts that are based on the product. Fixed in versions (SAP Hybris Commerce, versions 6.2, 6.3, 6.4, 6.5, 6.6, 6.7).
nvd
Sap Commerce vulnerabilities | cvebase