CVE-2020-6315
CVE-2020-6315
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5.7EPSS 0.8%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
20 Oct 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
SAP 3D Visual Enterprise Viewer, version 9, allows an attacker to send certain manipulated file to the victim, which can lead to leakage of sensitive information when the victim loads the malicious file into the VE viewer, leading to Information Disclosure.
CVSS:3.0/AV:A/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Affected products
SAP SE · SAP 3D Visual Enterprise ViewerWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →