Solution : https://service.sap.com/sap/support/notes/1475481 (SAP Service marketplace login required)
Key words : 
stores cross site scripting issue, stored cross-site scripting, solution affected releasessap srm 6, permanently modify displayed content, digital signature pages result, potentially obtain authentication information, cross-site scripting, cross-domain attack, digital sinature functonality, supplier relationship management
Related Notes : 
       
| 888889 | Automatic checks for security notes using RSECNOTE |