Description
SAP NetWeaver DevelKnowledge Warehouse is vulnerable to the XSS (cross-site scripting). The SAPIrExtHelp endpoint doesn't sanitize the user's input correctly.
Remediation
Upgrade to the latest version of SAP KW
References
Related Vulnerabilities
WordPress Plugin Better Font Awesome Cross-Site Scripting (2.0.3)
WordPress Plugin WP-Paginate Cross-Site Scripting (1.2.1)
WordPress Plugin Wordpress Countdown Widget Cross-Site Scripting (3.1.9.2)
WordPress Plugin WP Instagram-Best Instagram Feeds Cross-Site Scripting (1.0.19)
Drupal Core 4.7.x Multiple Cross-Site Scripting Vulnerabilities (4.7.0 - 4.7.3)