CVE-2014-1965
SAP NetWeaver - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in ISpeakAdapter in the Integration Repository in the SAP Exchange Infrastructure (BC-XI) component 3.0, 7.00 through 7.02, and 7.10 through 7.11 for SAP NetWeaver allows remote attackers to inject arbitrary web script or HTML via vectors related to PIP.
References (5)
Scores
EPSS
0.0033
EPSS Percentile
55.6%
Details
CWE
CWE-79
Status
published
Products (7)
sap/netweaver
sap/netweaver
sap/netweaver
sap/netweaver
sap/netweaver
sap/netweaver
n/a/n/a
Published
Feb 14, 2014
Tracked Since
Feb 18, 2026