Aller au contenu

Fiche vulnérabilité

CVE-2020-6265 : faille critique sap commerce (CVSS 9.8)

Description

SAP Commerce, versions - 6.7, 1808, 1811, 1905, and SAP Commerce (Data Hub), versions - 6.7, 1808, 1811, 1905, allows an attacker to bypass the authentication and/or authorization that has been configured by the system administrator due to the use of Hardcoded Credentials.

En bref

Sévérité
Critique (CVSS 9.8)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
9 juin 2020
Dernière mise à jour
17 juin 2026

Produits concernés

  • sap commerce
  • sap commerce data hub

Références

Rechercher une autre vulnérabilité dans la base CVE