First published: Fri Sep 08 2023(Updated: )
SAP S/4HANA Manage Catalog Items and Cross-Catalog searches Fiori apps allow an attacker to redirect users to a malicious site due to insufficient URL validation. As a result, it may have a slight impact on confidentiality and integrity.
Credit: cna@sap.com cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
Sap S\/4hana | =103 | |
Sap S\/4hana | =104 | |
Sap S\/4hana | =105 | |
Sap S\/4hana | =106 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-40306.
The severity of CVE-2023-40306 is medium with a severity value of 6.1.
CVE-2023-40306 affects SAP S/4HANA versions 103, 104, 105, and 106.
CVE-2023-40306 may have a slight impact on confidentiality and integrity.
To fix CVE-2023-40306, apply the recommended security patches provided by SAP.