Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-46919 | An unauthenticated attacker can embed a hidden access to a Biller Direct URL in a frame which, when loaded by the user, will submit a cross-site scripting request to the Biller Direct system. This can result in the disclosure or modification of non-sensitive information. |
No history.
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2024-11-26T14:33:56.259Z
Reserved: 2023-09-11T07:15:13.775Z
Link: CVE-2023-42479
No data.
Status : Modified
Published: 2023-12-12T01:15:10.827
Modified: 2026-06-17T06:23:55.470
Link: CVE-2023-42479
No data.
OpenCVE Enrichment
No data.
-
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
EUVD