SAP Knowledge Base Article - Preview

1446341 - Phishing - Content Spoofing

Symptom

The Cmc application allows a user to display content of an external URL.

An attacker may leverage this issue to carry out convincing phishing attacks against unsuspecting users by causing an arbitrary page to be loaded once a Business Objects specially-crafted URL is visited.


Read more...

Environment

Business Objects Enterprise XI 3.1

Product

SAP BusinessObjects Enterprise XI 3.1

Keywords

KBA , BI-BIP-DEP , Webapp Deployment, Networking, Vulnerabilities, Webservices , Bug Filed

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.