First published: Tue Apr 14 2020(Updated: )
SAP Business Objects Business Intelligence Platform (AdminTools), versions 4.1, 4.2, allows an attacker to redirect users to a malicious site due to insufficient URL validation and steal credentials of the victim, leading to URL Redirection vulnerability.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
SAP BusinessObjects BI Platform | =4.1 | |
SAP BusinessObjects BI Platform | =4.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
SAP Business Objects Business Intelligence Platform is a suite of business intelligence tools and applications that allow organizations to analyze and report on their business data.
Versions 4.1 and 4.2 of SAP Business Objects Business Intelligence Platform are affected by CVE-2020-6211.
The severity of CVE-2020-6211 is medium with a CVSS score of 6.1.
CVE-2020-6211 allows an attacker to redirect users to a malicious site and steal their credentials, leading to a URL redirection vulnerability.
To fix CVE-2020-6211, it is recommended to apply the necessary patches or updates provided by SAP and ensure proper URL validation is in place.