6.5
CVSSv2

CVE-2020-6291

Published: 14/07/2020 Updated: 14/07/2020
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

SAP Disclosure Management, version 10.1, session mechanism does not have expiration data set therefore allows unlimited access after authenticating once, leading to Insufficient Session Expiration

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sap disclosure management 10.1