6.1
CVSSv3

CVE-2020-6215

Published: 14/04/2020 Updated: 06/10/2023
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 516
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

SAP NetWeaver AS ABAP Business Server Pages Test Application IT00, versions 700, 701, 702, 730, 731, 740, 750, 751, 752, 753, 754, allows an malicious user to redirect users to a malicious site due to insufficient URL validation and steal credentials of the victim, leading to URL Redirection vulnerability.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sap netweaver as abap business server pages 700

sap netweaver as abap business server pages 701

sap netweaver as abap business server pages 702

sap netweaver as abap business server pages 730

sap netweaver as abap business server pages 731

sap netweaver as abap business server pages 740

sap netweaver as abap business server pages 750

sap netweaver as abap business server pages 751

sap netweaver as abap business server pages 752

sap netweaver as abap business server pages 753

sap netweaver as abap business server pages 754

Exploits

SAP Application Server ABAP and ABAP Platform suffer from an open redirection vulnerability ...