ZeroHour

CVE-2020-6190

CVSS 3.1
5.8 medium
EPSS
<1%p57
Published
()
Modified
Description

Certain vulnerable endpoints in SAP NetWeaver AS Java (Heap Dump Application), versions 7.30, 7.31, 7.40, 7.50, provide valuable information about the system like hostname, server node and installation path that could be misused by an attacker leading to Information Disclosure.

Vendors
sap
Products
netweaver application server java
Weakness
CWE-200
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.