CVE-2020-6258 PUBLISHED CVSS 4.300000190734863 MEDIUM

SAP Identity Management, version 8.0, does not perform necessary authorization checks for an authenticated user, allowing the attacker to view certain sensitive information of the victim, leading to Missing Authorization Check.

EPSS 0.17% · 38.3th percentile

Risk Scores

CVSS v3.0
4.300000190734863
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
EPSS Score
0.17%
38.3th percentile

Affected Products

VendorProductVersions
sapidentity_management8.0
SAP SESAP Identity Management< 8.0

Timeline

References

Open in Interactive Console →