6.5
CVSSv2

CVE-2020-6249

Published: 12/05/2020 Updated: 15/05/2020
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

The use of an admin backend report within SAP Master Data Governance, versions - S4CORE 101, S4FND 102, 103, 104, SAP_BS_FND 748; allows an malicious user to execute crafted database queries, exposing the backend database, leading to SQL Injection.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sap master data governance \\(s4core\\) 101

sap master data governance \\(s4fnd\\) 102

sap master data governance \\(s4fnd\\) 103

sap master data governance \\(s4fnd\\) 104

sap master data governance \\(sap bs fnd\\) 748