CVE-2022-41204

CVE-2022-41204

An attacker can change the content of an SAP Commerce – versions 1905, 2005, 2105, 2011, 2205, login page through a manipulated URL. They can inject code that allows them to redirect submissions from the affected login form to their own server. This allows them to steal credentials and hijack accounts. A successful attack could compromise the Confidentiality, Integrity, and Availability of the system.

Source: CVE-2022-41204

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다