Cross-site scripting (XSS) vulnerability in SAP HANA Web-based Development Workbench allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
http://service.sap.com/sap/support/notes/0002069676
http://blog.onapsis.com/analyzing-sap-security-notes-october-2014-edition/