CVE-2006-0731
published 2006-02-16CVE-2006-0731: WmRoot/adapter-index.dsp in SAP Business Connector Core Fix 7 and earlier allows remote attackers to conduct spoofing (phishing) attacks via an absolute URL in…
PriorityP421medium4CVSS 2.0
AVNACHAuNCPIPAN
EXPLOIT
EPSS
2.73%
84.4th percentile
WmRoot/adapter-index.dsp in SAP Business Connector Core Fix 7 and earlier allows remote attackers to conduct spoofing (phishing) attacks via an absolute URL in the url parameter, which loads the URL inside a frame.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| sap | business_connector | <= core_fix_7 | — |
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
Exploit-DB
SAP Business Connector 4.6/4.7 - 'adapter-index.dsp?url' Arbitrary Site Redirect
exploitdb·2006-02-15
CVE-2006-0731 SAP Business Connector 4.6/4.7 - 'adapter-index.dsp?url' Arbitrary Site Redirect
SAP Business Connector 4.6/4.7 - 'adapter-index.dsp?url' Arbitrary Site Redirect
---
source: https://www.securityfocus.com/bid/16671/info
SAP Business Connector is susceptible to an input-validation vulnerability. This issue is due to the application's failure to properly sanitize user-supplied input.
This issue allows remote attackers to execute phishing-style attacks against targeted SAP Business Connector administrators.
The following URI example demonstrates this issue:
http://www.example.com/WmRoot/adapter-index.dsp?url=http://www.attacker.com/
Exploit-DB
SAP Business Connector 4.6/4.7 - 'chopSAPLog.dsp?fullName' Arbitrary File Disclosure
exploitdb·2006-02-15
CVE-2006-0731 SAP Business Connector 4.6/4.7 - 'chopSAPLog.dsp?fullName' Arbitrary File Disclosure
SAP Business Connector 4.6/4.7 - 'chopSAPLog.dsp?fullName' Arbitrary File Disclosure
---
source: https://www.securityfocus.com/bid/16668/info
SAP Business Connector is prone to a file-access/deletion vulnerability. This issue arises due to an access-validation error.
A successful attack will result in the disclosure of sensitive or privileged information. An attacker may also delete arbitrary files. This often occurs with superuser privileges, since the package is often run with elevated privileges to gain access to TCP ports lower than 1024.
http://www.example.com/sapbc/SAP/chopSAPLog.dsp?fullName=/etc/passwd
Exploit-DB
SAP Business Connector 4.6/4.7 - 'deleteSingle?fullName' Arbitrary File Deletion
exploitdb·2006-02-15
CVE-2006-0731 SAP Business Connector 4.6/4.7 - 'deleteSingle?fullName' Arbitrary File Deletion
SAP Business Connector 4.6/4.7 - 'deleteSingle?fullName' Arbitrary File Deletion
---
source: https://www.securityfocus.com/bid/16668/info
SAP Business Connector is prone to a file-access/deletion vulnerability. This issue arises due to an access-validation error.
A successful attack will result in the disclosure of sensitive or privileged information. An attacker may also delete arbitrary files. This often occurs with superuser privileges, since the package is often run with elevated privileges to gain access to TCP ports lower than 1024.
http://www.example.com/sapbc/invoke/sap.monitor.rfcTrace/deleteSingle?fullName=
No writeups or analysis indexed.
http://secunia.com/advisories/18880http://securitytracker.com/id?1015639http://www.cybsec.com/vuln/CYBSEC_Security_Pre-Advisory_Phishing_Vector_in_SAP_BC.pdfhttp://www.securityfocus.com/archive/1/425056/100/0/threadedhttp://www.securityfocus.com/archive/1/434012/30/4980/threadedhttp://www.securityfocus.com/bid/16671http://www.vupen.com/english/advisories/2006/0611https://exchange.xforce.ibmcloud.com/vulnerabilities/24751http://secunia.com/advisories/18880http://securitytracker.com/id?1015639http://www.cybsec.com/vuln/CYBSEC_Security_Pre-Advisory_Phishing_Vector_in_SAP_BC.pdfhttp://www.securityfocus.com/archive/1/425056/100/0/threadedhttp://www.securityfocus.com/archive/1/434012/30/4980/threadedhttp://www.securityfocus.com/bid/16671http://www.vupen.com/english/advisories/2006/0611https://exchange.xforce.ibmcloud.com/vulnerabilities/24751
2006-02-16
Published