SAP Netweaver Application Server Java (Applications based on WebDynpro Java) versions 7.00, 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, allow an attacker to redirect users to a malicious site due to Reverse Tabnabbing vulnerabilities.
                
            References
                    | Link | Resource | 
|---|---|
| https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=571343107 | Vendor Advisory | 
| https://launchpad.support.sap.com/#/notes/2976947 | Permissions Required Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
                                
                                
  | 
                        
Information
                Published : 2021-03-10 07:15
Updated : 2021-03-17 12:56
NVD link : CVE-2021-21491
Mitre link : CVE-2021-21491
JSON object : View
CWE
                
                    
                        
                        CWE-601
                        
            URL Redirection to Untrusted Site ('Open Redirect')
Products Affected
                sap
- netweaver_application_server_java
 


