CVE-2020-26819: High severity sap netweaver as abap vulnerability
SAP NetWeaver AS ABAP (Web Dynpro), versions - 731, 740, 750, 751, 752, 753, 754, 755, 782, allows an authenticated user to access Web Dynpro components, that allows them to read and delete database logfiles because of Improper Access Control.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-26819?
The severity of CVE-2020-26819 is high with a severity value of 8.8.
Which versions of SAP NetWeaver AS ABAP are affected by CVE-2020-26819?
The versions 731, 740, 750, 751, 752, 753, 754, 755, and 782 of SAP NetWeaver AS ABAP are affected by CVE-2020-26819.
How can an authenticated user access Web Dynpro components in CVE-2020-26819?
An authenticated user can access Web Dynpro components in CVE-2020-26819 by exploiting a vulnerability that allows them to read and delete database logfiles due to improper access control.
What is the SAP NetWeaver Application Server ABAP?
The SAP NetWeaver Application Server ABAP is a software platform used for the development and deployment of ABAP-based applications in the SAP environment.
Where can I find more information about CVE-2020-26819?
You can find more information about CVE-2020-26819 on the SAP Support Launchpad and the SAP Community Network Wiki.