ZeroHour

CVE-2020-6230

CVSS 3.1
7.2 high
EPSS
1%p63
Published
()
Modified
Description

SAP OrientDB, version 3.0, allows an authenticated attacker with script execute/write permissions to inject code that can be executed by the application and lead to Code Injection. An attacker could thereby control the behavior of the application.

Vendors
sap
Products
orientdb
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.