ZeroHour

CVE-2020-6198

CVSS 3.1
9.8 critical
EPSS
1%p71
Published
()
Modified
Description

SAP Solution Manager (Diagnostics Agent), version 720, allows unencrypted connections from unauthenticated sources. This allows an attacker to control all remote functions on the Agent due to Missing Authentication Check.

Vendors
sap
Products
solution manager
Weakness
CWE-306, CWE-319
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.