← volver
CVE-2020-6183

CVE-2020-6183

CVSS 5.3 MEDIUMEPSS 0.7%
Vexday Risk Score
13Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 5.3EPSS 0.7%KEV nãoPoC Nuclei Metasploit Patch
Ciclo de vida
12 feb 2020Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
SAP Host Agent, version 7.21, allows an unprivileged user to read the shared memory or write to the shared memory by sending request to the main SAPOSCOL process and receive responses that may contain data read with user root privileges e.g. size of any directory, system hardware and OS details, leading to Missing Authorization Check vulnerability.
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Productos afectados
SAP SE · SAP Host Agent

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →