ID | CVE-2020-6238 | ||||||
Sažetak | SAP Commerce, versions - 6.6, 6.7, 1808, 1811, 1905, does not process XML input securely in the Rest API from Servlet xyformsweb, leading to Missing XML Validation. This affects confidentiality and availability (partially) of SAP Commerce. | ||||||
Reference | |||||||
CVSS |
|
||||||
Pristup |
|
||||||
Impact |
|
||||||
CVSS vektor | AV:N/AC:L/Au:N/C:P/I:N/A:P | ||||||
Zadnje važnije ažuriranje | 06-10-2022 - 18:09 | ||||||
Objavljeno | 14-04-2020 - 19:15 |