First published: Tue Nov 10 2020(Updated: )
SAP Solution Manager (JAVA stack), version - 7.20, allows an unauthenticated attacker to compromise the system because of missing authorization checks in the Outside Discovery Configuration Service, this has an impact to the integrity and availability of the service.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
SAP Solution Manager | =7.20 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this SAP Solution Manager (JAVA stack) vulnerability is CVE-2020-26822.
The severity level of the SAP Solution Manager (JAVA stack) vulnerability is critical.
An unauthenticated attacker can exploit this vulnerability by taking advantage of the missing authorization checks in the Outside Discovery Configuration Service.
This vulnerability has an impact on the integrity and availability of the system.
Yes, you can find the fix for this vulnerability by referring to the SAP Solution Manager notes or documentation provided in the references section.