CVE-2020-6292: High severity sap disclosure management vulnerability
Published Jul 14, 2020
·Updated
Logout mechanism in SAP Disclosure Management, version 10.1, does not invalidate one of the session cookies, leading to Insufficient Session Expiration.
Affected Software
1 affected component
SAP Disclosure Management=10.1
Event History
Jul 14, 2020
CVE Published
via MITRE·12:30 PM
Data Sourced
via MITRE·12:30 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2020-6292.
2
What is the severity of CVE-2020-6292?
CVE-2020-6292 has a severity rating of 8.8 (high).
3
What is the affected software for CVE-2020-6292?
The affected software for CVE-2020-6292 is SAP Disclosure Management version 10.1.
4
What is the description of CVE-2020-6292?
CVE-2020-6292 is a vulnerability in the logout mechanism of SAP Disclosure Management version 10.1, which does not invalidate one of the session cookies, leading to Insufficient Session Expiration.
5
How can I fix CVE-2020-6292?
To fix CVE-2020-6292, it is recommended to apply the necessary patches and updates provided by SAP.