CVE-2020-26818: High severity sap netweaver as abap vulnerability
SAP NetWeaver AS ABAP (Web Dynpro), versions - 731, 740, 750, 751, 752, 753, 754, 755, 782, allows an authenticated user to access Web Dynpro components, which reveals sensitive system information that would otherwise be restricted to highly privileged users because of missing authorization, resulting in Information Disclosure.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-26818?
CVE-2020-26818 has a medium severity rating due to the potential for exposing sensitive system information.
How do I fix CVE-2020-26818?
To fix CVE-2020-26818, apply the security patches provided by SAP for the affected NetWeaver AS ABAP versions.
What systems are affected by CVE-2020-26818?
CVE-2020-26818 affects SAP NetWeaver AS ABAP versions 731, 740, 750, 751, 752, 753, 754, 755, and 782.
What type of vulnerability is CVE-2020-26818?
CVE-2020-26818 is an authorization vulnerability that allows authenticated users to access Web Dynpro components.
What are the potential impacts of CVE-2020-26818?
The potential impacts of CVE-2020-26818 include unauthorized access to sensitive system information restricted to highly privileged users.