CVE-2020-6280: Medium severity sap abap vulnerability
SAP NetWeaver (ABAP Server) and ABAP Platform, versions 731, 740, 750, allows an attacker with admin privileges to access certain files which should otherwise be restricted, leading to Information Disclosure.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-6280?
CVE-2020-6280 is a vulnerability in SAP NetWeaver (ABAP Server) and ABAP Platform versions 731, 740, and 750 that allows an attacker with admin privileges to access certain files, leading to information disclosure.
How severe is CVE-2020-6280?
CVE-2020-6280 has a severity rating of medium with a CVSS score of 2.7.
Which software versions are affected by CVE-2020-6280?
SAP NetWeaver (ABAP Server) versions 731, 740, and 750, as well as ABAP Platform versions 7.31, 7.40, and 7.50 are affected by CVE-2020-6280.
How can an attacker exploit CVE-2020-6280?
An attacker with admin privileges can exploit CVE-2020-6280 to access restricted files.
Are there any additional resources for CVE-2020-6280?
Yes, you can find more information about CVE-2020-6280 in the SAP Support Portal and the SAP Community Network Wiki.