CVE-2020-6369 vulnerability in SAP Products
Published on October 20, 2020
SAP Solution Manager and SAP Focused Run (update provided in WILY_INTRO_ENTERPRISE 9.7, 10.1, 10.5, 10.7), allows an unauthenticated attackers to bypass the authentication if the default passwords for Admin and Guest have not been changed by the administrator.This may impact the confidentiality of the service.
Products Associated with CVE-2020-6369
stack.watch emails you whenever new vulnerabilities are published in SAP Focused Run or SAP Solution Manager. Just hit a watch button to start following.
Affected Versions
SAP SE CA Introscope Enterprise Manager (Affected products: SAP Solution Manager and SAP Focused Run):- Version < 9.7 is affected.
- Version < 10.1 is affected.
- Version < 10.5 is affected.
- Version < 10.7 is affected.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.