sap enable-now CVE-2020-6178 is a vulnerability in SAP Enable Now
Published on March 10, 2020

SAP Enable Now, before version 1911, sends the Session ID cookie value in URL. This might be stolen from the browser history or log files, leading to Information Disclosure.

NVD


Products Associated with CVE-2020-6178

Want to know whenever a new CVE is published for SAP Enable Now? stack.watch will email you.

 

Affected Versions

SAP SE SAP Enable Now Version < before version 1911 is affected by CVE-2020-6178

Exploit Probability

EPSS
0.09%
Percentile
25.83%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.