Vulnerability Description
In specific situations SAP GUI for Windows until and including 7.60 PL9, 7.70 PL0, forwards a user to specific malicious website which could contain malware or might lead to phishing attacks to steal credentials of the victim.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sap | Gui For Windows | 7.60 |
Related Weaknesses (CWE)
References
- https://launchpad.support.sap.com/#/notes/3023078Permissions RequiredVendor Advisory
- https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=576094655Vendor Advisory
- https://launchpad.support.sap.com/#/notes/3023078Permissions RequiredVendor Advisory
- https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=576094655Vendor Advisory
FAQ
What is CVE-2021-27612?
CVE-2021-27612 is a vulnerability with a CVSS score of 6.1 (MEDIUM). In specific situations SAP GUI for Windows until and including 7.60 PL9, 7.70 PL0, forwards a user to specific malicious website which could contain malware or might lead to phishing attacks to steal ...
How severe is CVE-2021-27612?
CVE-2021-27612 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-27612?
Check the references section above for vendor advisories and patch information. Affected products include: Sap Gui For Windows.