CVE-2020-6244: High severity sap business client vulnerability
SAP Business Client, version 7.0, allows an attacker after a successful social engineering attack to inject malicious code as a DLL file in untrusted directories that can be executed by the application, due to uncontrolled search path element. An attacker could thereby control the behavior of the application.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-6244?
CVE-2020-6244 has a medium severity rating due to the potential for code execution through DLL injection.
How do I fix CVE-2020-6244?
To remediate CVE-2020-6244, ensure that SAP Business Client is updated to a version that addresses this vulnerability.
What versions of SAP Business Client are affected by CVE-2020-6244?
CVE-2020-6244 specifically affects SAP Business Client version 7.0.
What type of attack exploits CVE-2020-6244?
CVE-2020-6244 can be exploited through a social engineering attack that allows for DLL file injection.
What impact does CVE-2020-6244 have on users?
If exploited, CVE-2020-6244 can allow attackers to execute arbitrary code, potentially compromising user data and application integrity.