CVE detail
CVE-2014-9569 — CVE-2014-9569
Published 2015-01-07 · Modified 2026-06-17 · Vendor sap · Product netweaver_business_client_for_html · Source nvd
UNKNOWN
severity
CVSS-derived band
0.0184
EPSS probability
exploitation probability, 30d
77.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
Multiple cross-site scripting (XSS) vulnerabilities in SAP NetWeaver Business Client (NWBC) for HTML 3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) title or (2) roundtrips parameter, aka SAP Security Note 2051285.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References