VYPR

Fiori Launchpad \(news Tile Application\)

by SAP

CVEs (2)

  • CVE-2020-26815HigNov 10, 2020
    risk 0.56cvss 8.6epss 0.01

    SAP Fiori Launchpad (News tile Application), versions - 750,751,752,753,754,755, allows an unauthorized attacker to send a crafted request to a vulnerable web application. It is usually used to target internal systems behind firewalls that are normally inaccessible to an…

  • CVE-2020-26825MedNov 13, 2020
    risk 0.40cvss 6.1epss 0.01

    SAP Fiori Launchpad (News tile Application), versions - 750,751,752,753,754,755, allows an unauthorized attacker to use SAP Fiori Launchpad News tile Application to send malicious code, to a different end user (victim), because News tile does not sufficiently encode user…