Описание
Open redirect vulnerability in in la/umTestSSO.jsp in SAP Supplier Relationship Management (SRM) allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the url parameter.
Комментарий
Per: http://cwe.mitre.org/data/definitions/601.html
"CWE-601: URL Redirection to Untrusted Site ('Open Redirect')"
Ссылки
- Exploit
- Exploit
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:sap:supplier_relationship_management:-:*:*:*:*:*:*:*
EPSS
Процентиль: 52%
0.00285
Низкий
5.8 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 3 лет назад
Open redirect vulnerability in in la/umTestSSO.jsp in SAP Supplier Relationship Management (SRM) allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the url parameter.
EPSS
Процентиль: 52%
0.00285
Низкий
5.8 Medium
CVSS2
Дефекты
NVD-CWE-Other