6.4
CVSSv2

CVE-2020-6293

Published: 12/08/2020 Updated: 13/08/2020
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
CVSS v3 Base Score: 6.5 | Impact Score: 2.5 | Exploitability Score: 3.9
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

SAP NetWeaver (Knowledge Management), versions - 7.30, 7.31, 7.40, 7.50, allows an unauthenticated malicious user to upload a malicious file and also to access, modify or make unavailable existing files but the impact is limited to the files themselves and is restricted by other policies such as access control lists and other upload file size restrictions, leading to Unrestricted File Upload.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sap netweaver knowledge management 7.30

sap netweaver knowledge management 7.31

sap netweaver knowledge management 7.40

sap netweaver knowledge management 7.50