Please note that the following has been taken (and slightly modified) from NetSuite's Communication on the risk of Cross-Scripting issues related to
Please note that the following has been taken (and slightly modified) from NetSuite’s Communication on the risk of Cross-Scripting issues related to SuiteCommerce Advanced.
If you are not sure which version your site is using, see How to determine which version of SuiteCommerce Advanced your site is using below. If you are not on one of the SCA versions listed above, you do not need to take any action. If you are using one of the vulnerable SCA releases listed above and you have not already made changes to the relevant lines of code to fix this vulnerability, continue to step 2.
On many SuiteCommerce sites, you can go to the home page, view source in your browser, scroll to the bottom of the page, and see your SuiteCommerce version number and other release-related information. If this does not work on your site, follow these steps to determine your SuiteCommerce version:
If your touch points are set on your domain name record:
If your touch points are set on your web site record:
We will implement the fixes and make sure that sites running the 2018.2, Aconcagua, Kilimanjaro, and Vinson releases of SuiteCommerce Advanced will no longer be vulnerable to known Cross-site Scripting (XSS) issues.
Get a free assessment from our cloud experts and map out your roadmap.
Get my free assessment