CVE-2020-6181
12.02.2020, 20:15
Under some circumstances the SAML SSO implementation in the SAP NetWeaver (SAP_BASIS versions 702, 730, 731, 740 and SAP ABAP Platform (SAP_BASIS versions 750, 751, 752, 753, 754), allows an attacker to include invalidated data in the HTTP response header sent to a Web user, leading to HTTP Response Splitting vulnerability.Enginsight
Vendor | Product | Version |
---|---|---|
sap | abap_platform | 7.50 |
sap | abap_platform | 7.51 |
sap | abap_platform | 7.52 |
sap | abap_platform | 7.53 |
sap | abap_platform | 7.54 |
sap | netweaver | 7.02 |
sap | netweaver | 7.30 |
sap | netweaver | 7.31 |
sap | netweaver | 7.40 |
𝑥
= Vulnerable software versions