CVE-2020-6261: Input Validation
Published Jul 1, 2020
·Updated
SAP Solution Manager (Trace Analysis), version 7.20, allows an attacker to perform a log injection into the trace file, due to Incomplete XML Validation. The readability of the trace file is impaired.
Affected Software
1 affected component
SAP Solution Manager=7.20
Event History
Jul 1, 2020
CVE Published
via MITRE·12:55 PM
Data Sourced
via MITRE·12:55 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2020-6261.
2
What is the severity level of CVE-2020-6261?
The severity level of CVE-2020-6261 is medium.
3
What is the affected software for CVE-2020-6261?
The affected software for CVE-2020-6261 is SAP Solution Manager version 7.20.
4
How does CVE-2020-6261 impact SAP Solution Manager?
CVE-2020-6261 allows an attacker to perform a log injection into the trace file, impairing the readability of the trace file.
5
Are there any references available for CVE-2020-6261?
Yes, you can find more information about CVE-2020-6261 at the following references: [Reference 1](https://launchpad.support.sap.com/#/notes/2915126) and [Reference 2](https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=547426775).