CVE-2020-6265
published 2020-06-09CVE-2020-6265: SAP Commerce, versions - 6.7, 1808, 1811, 1905, and SAP Commerce (Data Hub), versions - 6.7, 1808, 1811, 1905, allows an attacker to bypass the authentication…
critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
SAP Commerce, versions - 6.7, 1808, 1811, 1905, and SAP Commerce (Data Hub), versions - 6.7, 1808, 1811, 1905, allows an attacker to bypass the authentication and/or authorization that has been configured by the system administrator due to the use of Hardcoded Credentials.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| sap | commerce | — | — |
| sap | commerce | — | — |
| sap | commerce | — | — |
| sap | commerce | — | — |
| sap | commerce_data_hub | — | — |
| sap | commerce_data_hub | — | — |
| sap | commerce_data_hub | — | — |
| sap | commerce_data_hub | — | — |
| sap_se | sap_commerce | < 6.7 | 6.7 |
| sap_se | sap_commerce | < 1808 | 1808 |
| sap_se | sap_commerce | < 1811 | 1811 |
| sap_se | sap_commerce | < 1905 | 1905 |