SAP interview question

SQL injection and XSS cause and fix