CyberRota Analysis
AI-GeneratedSAP CRM WebClient UI is vulnerable to script injection attacks due to a lack of proper Content Security Policy (CSP) configuration for certain restrictive directives. While the integrity of the application is only minimally affected, organizations using this product should prioritize remediation to mitigate potential exploitation risks. This is particularly relevant for businesses that handle sensitive data through the affected application.
Original NVD Description
SAP CRM WebClient UI allows an attacker to inject and execute malicious scripts in the context of the application due to the absence of a Content Security Policy (CSP) configuration for certain restrictive directives. This vulnerability has a low impact on the integrity of the application. Confidentiality and availability are not impacted.