Unknown
CVE-2020-6296
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
CVE-2020-6296
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
SAP NetWeaver (ABAP Server) and ABAP Platform, versions – 700, 701, 702, 710, 711, 730, 731, 740, 750, 751, 753, 755, allows an attacker to inject code that can be executed by the application, leading to Code Injection. An attacker could thereby control the behavior of the application.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Vendors
Products
- abap platform 7.31,
- abap platform 700,
- abap platform 701,
- abap platform 702,
- abap platform 710,
- abap platform 711,
- abap platform 740,
- abap platform 750,
- abap platform 751,
- abap platform 753,
- abap platform 755,
- netweaver application server abap 700,
- netweaver application server abap 701,
- netweaver application server abap 702,
- netweaver application server abap 710,
- netweaver application server abap 711,
- netweaver application server abap 731,
- netweaver application server abap 740,
- netweaver application server abap 750,
- netweaver application server abap 751,
- netweaver application server abap 753,
- netweaver application server abap 755
References
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: