CVE Vulnerabilities

CVE-2020-6369

Published: Oct 20, 2020 | Modified: Jun 17, 2021
CVSS 3.x
5.9
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

SAP Solution Manager and SAP Focused Run (update provided in WILY_INTRO_ENTERPRISE 9.7, 10.1, 10.5, 10.7), allows an unauthenticated attackers to bypass the authentication if the default passwords for Admin and Guest have not been changed by the administrator.This may impact the confidentiality of the service.

Affected Software

Name Vendor Start Version End Version
Focused_run Sap 9.7 (including) 9.7 (including)
Focused_run Sap 10.1 (including) 10.1 (including)
Focused_run Sap 10.5 (including) 10.5 (including)
Focused_run Sap 10.7 (including) 10.7 (including)
Solution_manager Sap 9.7 (including) 9.7 (including)
Solution_manager Sap 10.1 (including) 10.1 (including)
Solution_manager Sap 10.5 (including) 10.5 (including)
Solution_manager Sap 10.7 (including) 10.7 (including)

References