TROYANOSYVIRUS
Back to CVEs

CVE-2026-0513

MEDIUM
4.7

Description

Due to an Open Redirect Vulnerability in SAP Supplier Relationship Management (SICF Handler in SRM Catalog), an unauthenticated attacker could craft a malicious URL that, if accessed by a victim, redirects them to an attacker-controlled site.This causes low impact on integrity of the application. Confidentiality and availability are not impacted.

CVE Details

CVSS v3.1 Score4.7
SeverityMEDIUM
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N
Attack VectorNETWORK
ComplexityLOW
Privileges RequiredNONE
User InteractionREQUIRED
Published1/13/2026
Last Modified1/22/2026
Sourcenvd
Honeypot Sightings0

Affected Products

sap:supplier_relationship_management

Weaknesses (CWE)

CWE-601

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.