CVE-2020-6299
- EPSS 0.23%
- Veröffentlicht 12.08.2020 14:15:14
- Zuletzt bearbeitet 21.11.2024 05:35:27
SAP NetWeaver (ABAP Server) and ABAP Platform, versions - 740, 750, 751, 752, 753, 754, 755, allows a business user to access the list of users in the given system using value help, leading to Information Disclosure.
CVE-2020-6296
- EPSS 0.5%
- Veröffentlicht 12.08.2020 14:15:14
- Zuletzt bearbeitet 21.11.2024 05:35:27
SAP NetWeaver (ABAP Server) and ABAP Platform, versions - 700, 701, 702, 710, 711, 730, 731, 740, 750, 751, 753, 755, allows an attacker to inject code that can be executed by the application, leading to Code Injection. An attacker could thereby cont...
- EPSS 0.23%
- Veröffentlicht 14.07.2020 13:15:12
- Zuletzt bearbeitet 21.11.2024 05:35:25
SAP NetWeaver (ABAP Server) and ABAP Platform, versions 731, 740, 750, allows an attacker with admin privileges to access certain files which should otherwise be restricted, leading to Information Disclosure.
CVE-2020-6181
- EPSS 0.31%
- Veröffentlicht 12.02.2020 20:15:13
- Zuletzt bearbeitet 21.11.2024 05:35:15
Under some circumstances the SAML SSO implementation in the SAP NetWeaver (SAP_BASIS versions 702, 730, 731, 740 and SAP ABAP Platform (SAP_BASIS versions 750, 751, 752, 753, 754), allows an attacker to include invalidated data in the HTTP response h...