CVE-2020-6280

SAP NetWeaver (ABAP Server) and ABAP Platform, versions 731, 740, 750, allows an attacker with admin privileges to access certain files which should otherwise be restricted, leading to Information Disclosure.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:sap:abap_platform:7.31:*:*:*:*:*:*:*
cpe:2.3:a:sap:abap_platform:7.40:*:*:*:*:*:*:*
cpe:2.3:a:sap:abap_platform:7.50:*:*:*:*:*:*:*
cpe:2.3:a:sap:netweaver_as_abap:731:*:*:*:*:*:*:*
cpe:2.3:a:sap:netweaver_as_abap:740:*:*:*:*:*:*:*
cpe:2.3:a:sap:netweaver_as_abap:750:*:*:*:*:*:*:*

Information

Published : 2020-07-14 13:15

Updated : 2021-07-21 11:39


NVD link : CVE-2020-6280

Mitre link : CVE-2020-6280


JSON object : View

Products Affected

sap

  • abap_platform
  • netweaver_as_abap
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor