Link Redirection Vulnerability in SAP NetWeaver Application Server for ABAP
CVE-2023-23853
Key Information:
- Vendor
SAP
- Vendor
- CVE Published:
- 14 February 2023
What is CVE-2023-23853?
An unauthenticated attacker can exploit a vulnerability in the SAP NetWeaver Application Server for ABAP, allowing the creation of a malicious link. If clicked by an unsuspecting user, this link redirects them to a harmful site, enabling the attacker to potentially read or alter sensitive information. This redirection could also expose users to phishing attempts, posing significant risks to both user security and data integrity.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
NetWeaver Application Server for ABAP and ABAP Platform 700
NetWeaver Application Server for ABAP and ABAP Platform 702
NetWeaver Application Server for ABAP and ABAP Platform 731
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved