CVE-2020-6287
critical · 10Actively exploitedOn the CISA Known Exploited Vulnerabilities catalog
Apply updates per vendor instructions.
A public exploit / detection template exists
Weaponised detection is publicly available, which meaningfully raises real-world risk regardless of CVSS. nuclei-templates →
SAP NetWeaver AS JAVA (LM Configuration Wizard), versions - 7.30, 7.31, 7.40, 7.50, does not perform an authentication check which allows an attacker without prior authentication to execute configuration tasks to perform critical actions against the SAP Java system, including the ability to create an administrative user, and therefore compromising Confidentiality, Integrity and Availability of the system, leading to Missing Authentication Check.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Weaknesses
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| sap | netweaver_application_server_java | 7.30 |
| sap | netweaver_application_server_java | 7.31 |
| sap | netweaver_application_server_java | 7.40 |
| sap | netweaver_application_server_java | 7.50 |
Check a specific version with /api/v1/cve/match.
References
- http://packetstormsecurity.com/files/162085/SAP-JAVA-Configuration-Task-Execution.html
- http://seclists.org/fulldisclosure/2021/Apr/6
- https://launchpad.support.sap.com/#/notes/2934135
- https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=552599675
- https://www.onapsis.com/recon-sap-cyber-security-vulnerability
- http://packetstormsecurity.com/files/162085/SAP-JAVA-Configuration-Task-Execution.html
- http://seclists.org/fulldisclosure/2021/Apr/6
- https://launchpad.support.sap.com/#/notes/2934135
- https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=552599675
- https://www.onapsis.com/recon-sap-cyber-security-vulnerability
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2020-6287
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2020-6287