CVE-2020-6252 PUBLISHED CVSS 9 CRITICAL

Under certain conditions SAP Adaptive Server Enterprise (Cockpit), version 16.0, allows an attacker with access to local network, to get sensitive and confidential information, leading to Information Disclosure. It can be used to get user account credentials, tamper with system data and impact system availability.

EPSS 0.16% · 36.5th percentile

Risk Scores

CVSS v3.0
9
CVSS:3.0/AV:A/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
EPSS Score
0.16%
36.5th percentile

Affected Products

VendorProductVersions
SAP SESAP Adaptive Server Enterprise (Cockpit)< 16.0
sapadaptive_server_enterprise_cockpit16.0

Timeline

References

Open in Interactive Console →