Description
SAP NetWeaver DevelKnowledge Warehouse is vulnerable to the XSS (cross-site scripting). The SAPIrExtHelp endpoint doesn't sanitize the user's input correctly.
Remediation
Upgrade to the latest version of SAP KW
References
Related Vulnerabilities
WordPress Plugin Testimonial Slider Cross-Site Scripting (1.2.1)
WordPress Plugin Global Flash Galleries Cross-Site Scripting (0.13.4)
WordPress Plugin MoolaMojo Cross-Site Scripting (0.7.4.1)
WordPress Plugin Contest Gallery-Photo Contest for WordPress Cross-Site Scripting (13.1.0.9)
WordPress Plugin External Media without Import Cross-Site Scripting (1.0.1)