← back
CVE-2022-28215

CVE-2022-28215

EPSS 0.8%CWE-601
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS EPSS 0.8%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
12 Apr 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
SAP NetWeaver ABAP Server and ABAP Platform - versions 740, 750, 787, allows an unauthenticated attacker to redirect users to a malicious site due to insufficient URL validation. This could lead to the user being tricked to disclose personal information.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →