NA

CVE-2023-42479

Published: 12/12/2023 Updated: 15/12/2023
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

An unauthenticated attacker can embed a hidden access to a Biller Direct URL in a frame which, when loaded by the user, will submit a cross-site scripting request to the Biller Direct system. This can result in the disclosure or modification of non-sensitive information.

Vulnerable Product Search on Vulmon Subscribe to Product

sap biller direct 750

sap biller direct 635