Vulnerability Description
Under certain conditions SAP Adaptive Server Enterprise (Cockpit), version 16.0, allows an attacker with access to local network, to get sensitive and confidential information, leading to Information Disclosure. It can be used to get user account credentials, tamper with system data and impact system availability.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sap | Adaptive Server Enterprise Cockpit | 16.0 |
References
- https://launchpad.support.sap.com/#/notes/2917090Permissions Required
- https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=545396222Vendor Advisory
- https://launchpad.support.sap.com/#/notes/2917090Permissions Required
- https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=545396222Vendor Advisory
FAQ
What is CVE-2020-6252?
CVE-2020-6252 is a vulnerability with a CVSS score of 8.0 (HIGH). Under certain conditions SAP Adaptive Server Enterprise (Cockpit), version 16.0, allows an attacker with access to local network, to get sensitive and confidential information, leading to Information ...
How severe is CVE-2020-6252?
CVE-2020-6252 has been rated HIGH with a CVSS base score of 8.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-6252?
Check the references section above for vendor advisories and patch information. Affected products include: Sap Adaptive Server Enterprise Cockpit.