SAP UI5 HTTP Handler (corrected in SAP_UI versions 7.5, 7.51, 7.52, 7.53, 7.54 and SAP UI_700 version 2.0) allows an attacker to manipulate content due to insufficient URL validation.
This attack-focused weakness is caused by incorrectly implemented authentication schemes that are subject to spoofing attacks.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ui | Sap | 2.0 (including) | 2.0 (including) |
Ui | Sap | 7.5 (including) | 7.5 (including) |
Ui | Sap | 7.51 (including) | 7.51 (including) |
Ui | Sap | 7.52 (including) | 7.52 (including) |
Ui | Sap | 7.53 (including) | 7.53 (including) |
Ui | Sap | 7.54 (including) | 7.54 (including) |