First published: Tue Nov 10 2020(Updated: )
SAP ERP Client for E-Bilanz, version - 1.0, installation sets Incorrect default filesystem permissions are set in its installation folder which allows anyone to modify the files in the folder.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
SAP ERP Client for E-Bilanz | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-26807 is considered a moderate severity vulnerability due to incorrect default filesystem permissions.
To fix CVE-2020-26807, adjust the filesystem permissions of the installation folder to restrict unauthorized access.
The risks associated with CVE-2020-26807 include unauthorized modification of files within the installation folder, potentially leading to data integrity issues.
CVE-2020-26807 affects users of SAP ERP Client for E-Bilanz version 1.0.
CVE-2020-26807 is not necessarily exploitable remotely as it relies on local filesystem access.