Sap Se Sap Fiori vulnerabilities
2 known vulnerabilities affecting sap_se/sap_fiori.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM1LOW1
Vulnerabilities
Page 1 of 1
CVE-2025-42941LOWCVSS 3.5vSAP_UI 7542025-08-12
CVE-2025-42941 [LOW] CWE-1022 CVE-2025-42941: SAP Fiori (Launchpad) is vulnerable to Reverse Tabnabbing vulnerability due to inadequate external n
SAP Fiori (Launchpad) is vulnerable to Reverse Tabnabbing vulnerability due to inadequate external navigation protections for its link () elements. An attacker with administrative user privileges could exploit this by leveraging compromised or malicious pages. While administrative access is necessary for certain configurations, the attacker does not n
cvelistv5nvd
CVE-2020-6283MEDIUMCVSS 6.1fixed in 750fixed in 752+3 more2020-09-09
CVE-2020-6283 [MEDIUM] CWE-79 CVE-2020-6283: SAP Fiori Launchpad does not sufficiently encode user controlled inputs, and hence allowing the atta
SAP Fiori Launchpad does not sufficiently encode user controlled inputs, and hence allowing the attacker to inject the meta tag into the launchpad html using the vulnerable parameter, resulting in reflected Cross-Site Scripting (XSS) vulnerability. With a successful attack, the attacker can steal authentication information of the user, such as data rel
cvelistv5nvd