CVE-2020-6178
10.03.2020, 21:15
SAP Enable Now, before version 1911, sends the Session ID cookie value in URL. This might be stolen from the browser history or log files, leading to Information Disclosure.Enginsight
| Vendor | Product | Version |
|---|---|---|
| sap | enable_now | 𝑥 < 1911 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration