Medium
CVE-2022-41273
SAP Sourcing and Contract Lifecycle Management could allow a remote attacker to conduct phishing attacks, caused by an open redirect vulnerability. An attacker could exploit this vulnerability using a specially-crafted URL to redirect a victim to arbitrary Web sites.
Gain Access
SAP
Current SAP customers should refer to SAP note for patch information, available from the SAP Website (login required).