Логотип exploitDog
bind:CVE-2020-6286
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-6286

Количество 2

Количество 2

nvd логотип

CVE-2020-6286

больше 5 лет назад

The insufficient input path validation of certain parameter in the web service of SAP NetWeaver AS JAVA (LM Configuration Wizard), versions - 7.30, 7.31, 7.40, 7.50, allows an unauthenticated attacker to exploit a method to download zip files to a specific directory, leading to Path Traversal.

CVSS3: 5.3
EPSS: Высокий
github логотип

GHSA-xp68-m4r3-hpqf

больше 3 лет назад

The insufficient input path validation of certain parameter in the web service of SAP NetWeaver AS JAVA (LM Configuration Wizard), versions - 7.30, 7.31, 7.40, 7.50, allows an unauthenticated attacker to exploit a method to download zip files to a specific directory, leading to Path Traversal.

EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-6286

The insufficient input path validation of certain parameter in the web service of SAP NetWeaver AS JAVA (LM Configuration Wizard), versions - 7.30, 7.31, 7.40, 7.50, allows an unauthenticated attacker to exploit a method to download zip files to a specific directory, leading to Path Traversal.

CVSS3: 5.3
86%
Высокий
больше 5 лет назад
github логотип
GHSA-xp68-m4r3-hpqf

The insufficient input path validation of certain parameter in the web service of SAP NetWeaver AS JAVA (LM Configuration Wizard), versions - 7.30, 7.31, 7.40, 7.50, allows an unauthenticated attacker to exploit a method to download zip files to a specific directory, leading to Path Traversal.

86%
Высокий
больше 3 лет назад

Уязвимостей на страницу