6.5
CVSSv3

CVE-2020-6270

Published: 10/06/2020 Updated: 05/10/2022
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:N/I:P/A:N

Vulnerability Summary

SAP NetWeaver AS ABAP (Banking Services), versions - 710, 711, 740, 750, 751, 752, 75A, 75B, 75C, 75D, 75E, does not perform necessary authorization checks for an authenticated user due to Missing Authorization Check, allowing wrong and unexpected change of individual conditions by a malicious user leading to wrong prices.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sap netweaver application server abap 750

sap netweaver application server abap 752

sap netweaver application server abap 710

sap netweaver application server abap 711

sap netweaver application server abap 740

sap netweaver application server abap 751

sap netweaver application server abap 75a

sap netweaver application server abap 75b

sap netweaver application server abap 75c

sap netweaver application server abap 75d

sap netweaver application server abap 75e