CVE-2020-6178 is a vulnerability in SAP Enable Now
Published on March 10, 2020
SAP Enable Now, before version 1911, sends the Session ID cookie value in URL. This might be stolen from the browser history or log files, leading to Information Disclosure.
Products Associated with CVE-2020-6178
Want to know whenever a new CVE is published for SAP Enable Now? stack.watch will email you.
Affected Versions
SAP SE SAP Enable Now Version < before version 1911 is affected by CVE-2020-6178Exploit Probability
EPSS
0.09%
Percentile
25.83%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.