CVE-2020-6244
12.05.2020, 18:15
SAP Business Client, version 7.0, allows an attacker after a successful social engineering attack to inject malicious code as a DLL file in untrusted directories that can be executed by the application, due to uncontrolled search path element. An attacker could thereby control the behavior of the application.Enginsight
Vendor | Product | Version |
---|---|---|
sap | business_client | 6.0 |
sap | business_client | 6.0:patch_level1 |
sap | business_client | 6.0:patch_level10 |
sap | business_client | 6.0:patch_level11 |
sap | business_client | 6.0:patch_level12 |
sap | business_client | 6.0:patch_level13 |
sap | business_client | 6.0:patch_level14 |
sap | business_client | 6.0:patch_level15 |
sap | business_client | 6.0:patch_level16 |
sap | business_client | 6.0:patch_level17 |
sap | business_client | 6.0:patch_level2 |
sap | business_client | 6.0:patch_level3 |
sap | business_client | 6.0:patch_level4 |
sap | business_client | 6.0:patch_level5 |
sap | business_client | 6.0:patch_level6 |
sap | business_client | 6.0:patch_level7 |
sap | business_client | 6.0:patch_level8 |
sap | business_client | 6.0:patch_level9 |
sap | business_client | 6.5 |
sap | business_client | 6.5:patch_level1 |
sap | business_client | 6.5:patch_level10 |
sap | business_client | 6.5:patch_level11 |
sap | business_client | 6.5:patch_level12 |
sap | business_client | 6.5:patch_level13 |
sap | business_client | 6.5:patch_level14 |
sap | business_client | 6.5:patch_level15 |
sap | business_client | 6.5:patch_level16 |
sap | business_client | 6.5:patch_level17 |
sap | business_client | 6.5:patch_level18 |
sap | business_client | 6.5:patch_level19 |
sap | business_client | 6.5:patch_level2 |
sap | business_client | 6.5:patch_level20 |
sap | business_client | 6.5:patch_level21 |
sap | business_client | 6.5:patch_level22 |
sap | business_client | 6.5:patch_level3 |
sap | business_client | 6.5:patch_level4 |
sap | business_client | 6.5:patch_level5 |
sap | business_client | 6.5:patch_level6 |
sap | business_client | 6.5:patch_level7 |
sap | business_client | 6.5:patch_level8 |
sap | business_client | 6.5:patch_level9 |
sap | business_client | 7.0 |
sap | business_client | 7.0:patch_level1 |
sap | business_client | 7.0:patch_level2 |
sap | business_client | 7.0:patch_level3 |
sap | business_client | 7.0:patch_level4 |
sap | business_client | 7.0:patch_level5 |
sap | business_client | 7.0:patch_level6 |
sap | business_client | 7.0:patch_level7 |
sap | business_client | 7.0:patch_level8 |
sap | business_client | 7.0:patch_level9 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration