The Java administration console in SAP CRM has XSS. This is SAP Security Note 2478964.
| Software | From | Fixed in |
|---|---|---|
| sap / customer_relationship_management | 700 | 700.x |
| sap / customer_relationship_management | 701 | 701.x |
| sap / customer_relationship_management | 702 | 702.x |
| sap / customer_relationship_management | 731 | 731.x |
| sap / customer_relationship_management | 730 | 730.x |
| sap / customer_relationship_management | 732 | 732.x |
| sap / customer_relationship_management | 733 | 733.x |
| sap / customer_relationship_management | 754 | 754.x |