CVE Published: 14/09/2021 |
CVE Updated: 03/08/2024 |
CVE Year: 2021 Source: sap |
Vendor: SAP SE |
Product: SAP Contact Center Status : PUBLISHED
CVE-2021-33675 Description
Under certain conditions, SAP Contact Center - version 700, does not sufficiently encode user-controlled inputs. This allows an attacker to exploit a Reflected Cross-Site Scripting (XSS) vulnerability through phishing and to execute arbitrary code on the victim\'s browser.