Skip to main content

Vendor/product archive

sap / biller_direct CVEs

Beta · best-effort

2 CVEs tagged to sap / biller_direct0 Critical, 0 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2023-42479

Published Dec 12, 2023

An unauthenticated attacker can embed a hidden access to a Biller Direct URL in a frame which, when loaded by the user, will submit a cross-site scripting request to the Biller Di…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-41207

Published Nov 8, 2022

SAP Biller Direct allows an unauthenticated attacker to craft a legitimate looking URL. When clicked by an unsuspecting victim, it will use an unsensitized parameter to redirect t…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1