First published: Tue Oct 09 2018(Updated: )
SAP Fiori 1.0 for SAP ERP HCM (Approve Leave Request, version 2) application allows an attacker to trick an authenticated user to send unintended request to the web server. This vulnerability is due to insufficient CSRF protection.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
Sap Fiori | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.