First published: Tue May 12 2020(Updated: )
SAP Identity Management, version 8.0, does not perform necessary authorization checks for an authenticated user, allowing the attacker to view certain sensitive information of the victim, leading to Missing Authorization Check.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
SAP Identity Management | =8.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-6258 is rated as a medium severity vulnerability.
To fix CVE-2020-6258, you should update your SAP Identity Management to a version that includes the necessary authorization checks.
CVE-2020-6258 allows attackers to view sensitive information of the victim due to missing authorization checks.
CVE-2020-6258 affects SAP Identity Management version 8.0.
Users of SAP Identity Management version 8.0 may be impacted by the vulnerability CVE-2020-6258.