Due to insufficient URL Validation in forums in SAP NetWeaver versions 7.30, 7.31, 7.40, an attacker can redirect users to a malicious site.
2018-11-13T20:29:00.357
2024-11-21T04:03:53.150
Modified
CVSSv3.0: 6.1 (MEDIUM)
AV:N/AC:M/Au:N/C:P/I:P/A:N
8.6
4.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | sap | netweaver | 7.30 | Yes |
Application | sap | netweaver | 7.31 | Yes |
Application | sap | netweaver | 7.40 | Yes |