sap netweaver-as-abap CVE-2020-26818 vulnerability in SAP Products
Published on November 10, 2020

SAP NetWeaver AS ABAP (Web Dynpro), versions - 731, 740, 750, 751, 752, 753, 754, 755, 782, allows an authenticated user to access Web Dynpro components, which reveals sensitive system information that would otherwise be restricted to highly privileged users because of missing authorization, resulting in Information Disclosure.

NVD


Products Associated with CVE-2020-26818

stack.watch emails you whenever new vulnerabilities are published in SAP Netweaver As Abap or SAP Netweaver Application Server Abap. Just hit a watch button to start following.

 
 

Affected Versions

SAP SE SAP NetWeaver AS ABAP (Web Dynpro):

Exploit Probability

EPSS
0.27%
Percentile
49.69%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.