7.5
CVE-2020-6369
- EPSS 0.95%
- Published 20.10.2020 14:15:14
- Last modified 21.11.2024 05:35:35
- Source cna@sap.com
- Teams watchlist Login
- Open Login
SAP Solution Manager and SAP Focused Run (update provided in WILY_INTRO_ENTERPRISE 9.7, 10.1, 10.5, 10.7), allows an unauthenticated attackers to bypass the authentication if the default passwords for Admin and Guest have not been changed by the administrator.This may impact the confidentiality of the service.
Data is provided by the National Vulnerability Database (NVD)
SAP ≫ Focused Run Version9.7
SAP ≫ Focused Run Version10.1
SAP ≫ Focused Run Version10.5
SAP ≫ Focused Run Version10.7
SAP ≫ Solution Manager Version9.7
SAP ≫ Solution Manager Version10.1
SAP ≫ Solution Manager Version10.5
SAP ≫ Solution Manager Version10.7
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.95% | 0.756 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 5.9 | 2.2 | 3.6 |
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
|
nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:P/I:N/A:N
|
cna@sap.com | 7.5 | 3.9 | 3.6 |
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
|