CVE-2020-26836 PUBLISHED CVSS 3.4000000953674316 LOW

SAP Solution Manager (Trace Analysis), version - 720, allows for misuse of a parameter in the application URL leading to Open Redirect vulnerability, an attacker can enter a link to malicious site which could trick the user to enter credentials or download malicious software, as a parameter in the application URL and share it with the end user who could potentially become a victim of the attack.

EPSS 4.93% · 89.6th percentile

Risk Scores

CVSS v3.0
3.4000000953674316
CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N
EPSS Score
4.93%
89.6th percentile

Affected Products

VendorProductVersions
sapsolution_manager7.20
SAP SESAP Solution Manager (Trace Analysis)< 720

Timeline

References

Open in Interactive Console →