Biller Direct SAP Biller Direct

Do you want an email whenever new security vulnerabilities are reported in SAP Biller Direct?

By the Year

In 2024 there have been 0 vulnerabilities in SAP Biller Direct . Last year Biller Direct had 1 security vulnerability published. Right now, Biller Direct is on track to have less security vulnerabilities in 2024 than it did last year.

Year Vulnerabilities Average Score
2024 0 0.00
2023 1 6.10
2022 1 6.10
2021 0 0.00
2020 0 0.00
2019 0 0.00
2018 0 0.00

It may take a day or so for new Biller Direct vulnerabilities to show up in the stats or in the list of recent security vulnerabilties. Additionally vulnerabilities may be tagged under a different product or component name.

Recent SAP Biller Direct Security Vulnerabilities

An unauthenticated attacker can embed a hidden access to a Biller Direct URL in a frame

CVE-2023-42479 6.1 - Medium - December 12, 2023

An unauthenticated attacker can embed a hidden access to a Biller Direct URL in a frame which, when loaded by the user, will submit a cross-site scripting request to the Biller Direct system. This can result in the disclosure or modification of non-sensitive information.

XSS

SAP Biller Direct allows an unauthenticated attacker to craft a legitimate looking URL

CVE-2022-41207 6.1 - Medium - November 08, 2022

SAP Biller Direct allows an unauthenticated attacker to craft a legitimate looking URL. When clicked by an unsuspecting victim, it will use an unsensitized parameter to redirect the victim to a malicious site of the attacker's choosing which can result in disclosure or modification of the victim's information.

Open Redirect

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for SAP Biller Direct or by SAP? Click the Watch button to subscribe.

SAP
Vendor

subscribe