ZeroHour

CVE-2020-6232

CVSS 3.1
5.3 medium
EPSS
<1%p55
Published
()
Modified
Description

SAP Commerce, versions 1811, 1905, does not perform necessary authorization checks for an anonymous user, due to Missing Authorization Check. This affects confidentiality of secure media.

Vendors
sap
Products
commerce cloud
Weakness
CWE-862
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.