First published: Wed Jun 10 2020(Updated: )
SAP Fiori for SAP S/4HANA, versions - 100, 200, 300, 400, allows an attacker to redirect users to a malicious site due to insufficient URL validation, leading to URL Redirection.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
SAP Fiori | =200 | |
SAP Fiori | =300 | |
SAP Fiori | =400 | |
SAP Fiori | =500 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-6266 is classified as a medium severity vulnerability due to its impact on user redirection.
To address CVE-2020-6266, ensure that URL validation is correctly implemented in your SAP Fiori application.
CVE-2020-6266 affects SAP Fiori versions 200, 300, 400, and 500.
CVE-2020-6266 can be exploited through malicious URL redirection, leading users to potentially harmful sites.
Yes, user data may be at risk as attackers can redirect users to compromised sites via CVE-2020-6266.