CVE Vulnerabilities

CVE-2020-6296

Published: Aug 12, 2020 | Modified: Nov 21, 2024
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

SAP NetWeaver (ABAP Server) and ABAP Platform, versions - 700, 701, 702, 710, 711, 730, 731, 740, 750, 751, 753, 755, allows an attacker to inject code that can be executed by the application, leading to Code Injection. An attacker could thereby control the behavior of the application.

Affected Software

NameVendorStart VersionEnd Version
Abap_platformSap7.31 (including)7.31 (including)
Abap_platformSap700 (including)700 (including)
Abap_platformSap701 (including)701 (including)
Abap_platformSap702 (including)702 (including)
Abap_platformSap710 (including)710 (including)
Abap_platformSap711 (including)711 (including)
Abap_platformSap740 (including)740 (including)
Abap_platformSap750 (including)750 (including)
Abap_platformSap751 (including)751 (including)
Abap_platformSap753 (including)753 (including)
Abap_platformSap755 (including)755 (including)
Netweaver_application_server_abapSap700 (including)700 (including)
Netweaver_application_server_abapSap701 (including)701 (including)
Netweaver_application_server_abapSap702 (including)702 (including)
Netweaver_application_server_abapSap710 (including)710 (including)
Netweaver_application_server_abapSap711 (including)711 (including)
Netweaver_application_server_abapSap731 (including)731 (including)
Netweaver_application_server_abapSap740 (including)740 (including)
Netweaver_application_server_abapSap750 (including)750 (including)
Netweaver_application_server_abapSap751 (including)751 (including)
Netweaver_application_server_abapSap753 (including)753 (including)
Netweaver_application_server_abapSap755 (including)755 (including)

References