CVE-2020-6264: High severity sap commerce cloud vulnerability
Published Jun 10, 2020
·Updated
SAP Commerce, versions - 6.7, 1808, 1811, 1905, may allow an attacker to access information under certain conditions which would otherwise be restricted, leading to Information Disclosure.
Affected Software
4 affected components
SAP Commerce=6.7
SAP Commerce=1808
SAP Commerce=1811
SAP Commerce=1905
Event History
Jun 10, 2020
CVE Published
via MITRE·12:45 PM
Data Sourced
via MITRE·12:45 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-6264?
CVE-2020-6264 is rated as a medium severity vulnerability due to the potential for information disclosure.
2
How do I fix CVE-2020-6264?
To mitigate CVE-2020-6264, ensure you are using the latest patched versions of SAP Commerce.
3
What versions of SAP Commerce are affected by CVE-2020-6264?
CVE-2020-6264 affects SAP Commerce versions 6.7, 1808, 1811, and 1905.
4
What is the impact of CVE-2020-6264?
The impact of CVE-2020-6264 includes unauthorized access to restricted information.
5
Who is the vendor for CVE-2020-6264?
The vendor for CVE-2020-6264 is SAP.