The J2EE Engine in SAP NetWeaver 6.40, 7.02, and earlier allows remote attackers to redirect users to arbitrary web sites, conduct phishing attacks, and obtain sensitive information (cookies and SAPPASSPORT) via unspecified vectors.
Metrics
Affected Vendors & Products
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published: 2013-11-19T19:00:00.000Z
Updated: 2024-08-06T17:46:23.716Z
Reserved: 2013-11-19T00:00:00.000Z
Link: CVE-2013-6814
No data.
Status : Deferred
Published: 2013-11-20T14:12:30.913
Modified: 2025-04-11T00:51:21.963
Link: CVE-2013-6814
No data.