SAP Knowledge Base Article - Preview

2437845 - Collaboration Room's header HTML Editor executes JS script


If you edit the header of a collaboration room, an HTML Editor is opened.
If you enter here a html tag with JavaScript (JS) code, e.g.

<script type="text/javascript">// <![CDATA[
alert("any text can be here")
// ]]></script>

and save it, after refresh the script is executed.



  • EP Release Independent
  • SAP Netweaver
  • SAP Composition Environment
  • KMC Content Management


SAP NetWeaver all versions


Enterprise Portal 7.0, EP 7.0, Enterprise Portal 7.01, EP 7.01, Enterprise Portal 7.02, EP 7.02, Enterprise Portal 7.03, EP 7.03, Enterprise Portal 7.1, EP 7.1, Enterprise Portal 7.2, EP 7.2, Enterprise Portal 7.30, EP 7.30, Enterprise Portal 7.31, EP 7.31, Enterprise Portal 7.40, EP 7.4, Enterprise Portal 7.50, EP 7.5, KM, Knowledge Management, Content Management, CM, cross site script, cross-site, , KBA , EP-KM-TLS-HTM , HTML Editor , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.