QID 375874
QID 375874: SAP GUI Phising Vulnerability (3023078)
SAP provides ERP and other enterprise application which helps businesses to run their processes such as accounting, sales, production, human resources or payment, in an integrated environment.
In specific situations SAP GUI for Windows until and including 7.60 PL9, 7.70 PL0, forwards a user to specific malicious website which could contain malware or might lead to phishing attacks to steal credentials of the victim.
Affected Versions:
SAP GUI FOR WINDOWS 7.60
SAP GUI FOR WINDOWS 7.70
Successful exploitation of the vulnerability forwards a user to specific malicious website which could contain malware or might lead to phishing attacks to steal credentials of the victim.
Solution
Customers are advised to follow the SAP Security Note 3023078 for remediation instructions.
Vendor References
- SAP Security Note 3023078 -
launchpad.support.sap.com/#/notes/3023078
CVEs related to QID 375874
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| SAP GUI 3023078 |
|