Loading HuntDB...

GHSA-qm7h-4cgg-4m78

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

SAP Biller Direct allows an unauthenticated attacker to craft a legitimate looking URL. When clicked by an unsuspecting victim, it will use an unsensitized parameter to redirect the victim to a malicious site of the attacker's choosing which can result in disclosure or modification of the victim's information.

Related CVEs

Key Information

GHSA ID
GHSA-qm7h-4cgg-4m78
Published
November 9, 2022 12:00 PM
Last Modified
November 9, 2022 7:02 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 8, 2025 6:31 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.