Vulnerabilities > CVE-2020-6252 - Unspecified vulnerability in SAP Adaptive Server Enterprise Cockpit 16.0

047910
CVSS 8.0 - HIGH
Attack vector
ADJACENT_NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
low complexity
sap

Summary

Under certain conditions SAP Adaptive Server Enterprise (Cockpit), version 16.0, allows an attacker with access to local network, to get sensitive and confidential information, leading to Information Disclosure. It can be used to get user account credentials, tamper with system data and impact system availability.

Vulnerable Configurations

Part Description Count
Application
Sap
1

The Hacker News

idTHN:54B521E08BF332B06621B81176A8E99F
last seen2020-06-03
modified2020-06-03
published2020-06-03
reporterThe Hacker News
sourcehttps://thehackernews.com/2020/06/newly-patched-sap-ase-flaws-could-let.html
titleNewly Patched SAP ASE Flaws Could Let Attackers Hack Database Servers