SAP Wily Introscope Enterprise Manager allows an unauthenticated attacker to craft a specially crafted URL. Under certain conditions, when accessed by a victim, the injected script could execute in the user�s browser within the context of the application. This issue has a low impact on the confidentiality and integrity of the application with no impact on availability.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 09 Jun 2026 01:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SAP Wily Introscope Enterprise Manager allows an unauthenticated attacker to craft a specially crafted URL. Under certain conditions, when accessed by a victim, the injected script could execute in the user�s browser within the context of the application. This issue has a low impact on the confidentiality and integrity of the application with no impact on availability. | |
| Title | Cross-Site Scripting (XSS) vulnerability in SAP Wily Introscope Enterprise Manager | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2026-06-09T00:21:50.279Z
Reserved: 2026-05-07T18:31:04.067Z
Link: CVE-2026-44757
No data.
Status : Awaiting Analysis
Published: 2026-06-09T01:16:47.337
Modified: 2026-06-09T02:08:28.150
Link: CVE-2026-44757
No data.
OpenCVE Enrichment
Updated: 2026-06-09T02:30:26Z
Weaknesses