Under some circumstances the SAML SSO implementation in the SAP NetWeaver (SAP_BASIS versions 702, 730, 731, 740 and SAP ABAP Platform (SAP_BASIS versions 750, 751, 752, 753, 754), allows an malicious user to include invalidated data in the HTTP response header sent to a Web user, leading to HTTP Response Splitting vulnerability.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
sap abap platform 7.50 |
||
sap abap platform 7.51 |
||
sap abap platform 7.52 |
||
sap abap platform 7.53 |
||
sap abap platform 7.54 |
||
sap netweaver 7.02 |
||
sap netweaver 7.30 |
||
sap netweaver 7.31 |
||
sap netweaver 7.40 |