CVE Vulnerabilities

CVE-2020-6296

Published: Aug 12, 2020 | Modified: Oct 05, 2022
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

SAP NetWeaver (ABAP Server) and ABAP Platform, versions - 700, 701, 702, 710, 711, 730, 731, 740, 750, 751, 753, 755, allows an attacker to inject code that can be executed by the application, leading to Code Injection. An attacker could thereby control the behavior of the application.

Affected Software

Name Vendor Start Version End Version
Abap_platform Sap 7.31 (including) 7.31 (including)
Abap_platform Sap 700 (including) 700 (including)
Abap_platform Sap 701 (including) 701 (including)
Abap_platform Sap 702 (including) 702 (including)
Abap_platform Sap 710 (including) 710 (including)
Abap_platform Sap 711 (including) 711 (including)
Abap_platform Sap 740 (including) 740 (including)
Abap_platform Sap 750 (including) 750 (including)
Abap_platform Sap 751 (including) 751 (including)
Abap_platform Sap 753 (including) 753 (including)
Abap_platform Sap 755 (including) 755 (including)
Netweaver_application_server_abap Sap 700 (including) 700 (including)
Netweaver_application_server_abap Sap 701 (including) 701 (including)
Netweaver_application_server_abap Sap 702 (including) 702 (including)
Netweaver_application_server_abap Sap 710 (including) 710 (including)
Netweaver_application_server_abap Sap 711 (including) 711 (including)
Netweaver_application_server_abap Sap 731 (including) 731 (including)
Netweaver_application_server_abap Sap 740 (including) 740 (including)
Netweaver_application_server_abap Sap 750 (including) 750 (including)
Netweaver_application_server_abap Sap 751 (including) 751 (including)
Netweaver_application_server_abap Sap 753 (including) 753 (including)
Netweaver_application_server_abap Sap 755 (including) 755 (including)

References