First published: Wed Jun 10 2020(Updated: )
SAP Solution Manager (Problem Context Manager), version 7.2, does not perform the necessary authentication, allowing an attacker to consume large amounts of memory, causing the system to crash and read restricted data (files visible for technical administration users of the diagnostics agent).
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
SAP Solution Manager | =7.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this SAP Solution Manager vulnerability is CVE-2020-6271.
The severity rating of CVE-2020-6271 is high with a value of 8.2.
The affected software version of CVE-2020-6271 is SAP Solution Manager version 7.2.
CVE-2020-6271 allows an attacker to consume large amounts of memory, causing the system to crash and read restricted data.
Yes, you can find references for CVE-2020-6271 at the following links: [link 1](https://launchpad.support.sap.com/#/notes/2931391), [link 2](https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=547426775).