cbcvebase.
CVE-2021-33707
published 2021-08-10

CVE-2021-33707: SAP NetWeaver Knowledge Management allows remote attackers to redirect users to arbitrary websites and conduct phishing attacks via a URL stored in a…

medium6.1CVSS 3.1
AVNACLPRNUIRSCCLILAN
SAP NetWeaver Knowledge Management allows remote attackers to redirect users to arbitrary websites and conduct phishing attacks via a URL stored in a component. This could enable the attacker to compromise the user's confidentiality and integrity.

Affected

8 ranges
VendorProductVersion rangeFixed in
sapnetweaver_knowledge_management
sapnetweaver_knowledge_management
sapnetweaver_knowledge_management
sapnetweaver_knowledge_management
sap_sesap_netweaver< 7.307.30
sap_sesap_netweaver< 7.317.31
sap_sesap_netweaver< 7.407.40
sap_sesap_netweaver< 7.507.50