SAP Biller Direct allows an unauthenticated attacker to craft a...
Vulnerability Description
SAP Biller Direct allows an unauthenticated attacker to craft a legitimate looking URL. When clicked by an unsuspecting victim, it will use an unsensitized parameter to redirect the victim to a malicious site of the attacker's choosing which can result in disclosure or modification of the victim's information.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-41207
Credits & Attribution
No credits recorded in the NVD database.
References
More from SAP SE
View All →Affected Vendor
SAP SE
View all reports →