{"$ref":"https://www.cert.ssi.gouv.fr/openapi.json","affected_systems":[{"description":"SAP Web Application Server 6.x ;","product":{"name":"N/A","vendor":{"name":"SAP","scada":false}}},{"description":"SAP NetWeaver 4.x ;","product":{"name":"N/A","vendor":{"name":"SAP","scada":false}}},{"description":"SAP NetWeaver 7.x ;","product":{"name":"N/A","vendor":{"name":"SAP","scada":false}}},{"description":"SAP Web Application Server 7.x.","product":{"name":"N/A","vendor":{"name":"SAP","scada":false}}},{"description":"SAP Enterprise Portal 6.x ;","product":{"name":"N/A","vendor":{"name":"SAP","scada":false}}}],"affected_systems_content":null,"content":"## Description\n\nDeux vuln\u00e9rabilit\u00e9s permettant de l'injection de code indirecte ont \u00e9t\u00e9\nd\u00e9couvertes dans les scripts testsdisc et paramhelp de SAP NetWeaver.\n\n## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l'\u00e9diteur pour l'obtention des\ncorrectifs (cf. section Documentation).\n","cves":[],"links":[],"reference":"CERTA-2010-AVI-344","revisions":[{"description":"version initiale.","revision_date":"2010-07-29T00:00:00.000000"}],"risks":[{"description":"Injection de code indirecte \u00e0 distance"}],"summary":"De multiples vuln\u00e9rabilit\u00e9s dans SAP NetWeaver ont \u00e9t\u00e9 d\u00e9couvertes. Ces\nvuln\u00e9rabilit\u00e9s permettent l'injection de code indirecte \u00e0 distance\n(XSS).\n","title":"Multiples vuln\u00e9rabilit\u00e9s dans SAP NetWeaver","vendor_advisories":[{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 SAP 1416047","url":"https://service.sap.com/sap/support/notes/1416047"}]}
