4
CVE-2020-6280
- EPSS 0.94%
- Veröffentlicht 14.07.2020 13:15:12
- Zuletzt bearbeitet 21.11.2024 05:35:25
- Erkennungen
SAP NetWeaver (ABAP Server) and ABAP Platform, versions 731, 740, 750, allows an attacker with admin privileges to access certain files which should otherwise be restricted, leading to Information Disclosure.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
SAP ≫ Abap Platform Version 7.31
SAP ≫ Abap Platform Version 7.40
SAP ≫ Abap Platform Version 7.50
SAP ≫ Netweaver Application Server Abap Version 731
SAP ≫ Netweaver Application Server Abap Version 740
SAP ≫ Netweaver Application Server Abap Version 750
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.94% | 0.563 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 2.7 | 1.2 | 1.4 |
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
|
| NIST | 4 | 8 | 2.9 |
AV:N/AC:L/Au:S/C:P/I:N/A:N
|
| SAP | 2.7 | 1.2 | 1.4 |
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
|
https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=552599675
https://launchpad.support.sap.com/#/notes/2927373