Get a Pentest and security assessment of your IT network.

2021-current

CVE-2020-26832 – SAP AS ABAP (SAP Landscape Transformation), versions – 2011_1_620, 2011_1

SAP AS ABAP (SAP Landscape Transformation), versions – 2011_1_620, 2011_1_640, 2011_1_700, 2011_1_710, 2011_1_730, 2011_1_731, 2011_1_752, 2020 and SAP S4 HANA (SAP Landscape Transformation), versions – 101, 102, 103, 104, 105, allows a high privileged user to execute a RFC function module to which access should be restricted, however due to missing authorization an attacker can get access to some sensitive internal information of vulnerable SAP system or to make vulnerable SAP systems completely unavailable.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-26832

Reference (s):

  • https://launchpad.support.sap.com/#/notes/2993132
  • URL: https://launchpad.support.sap.com/#/notes/2993132
  • https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=564757079
  • URL: https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=564757079
Related posts
2021-current

CVE-2004-1715 - Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 all

2021-current

CVE-2014-5418 - GE Multilink ML800, ML1200, ML1600, and ML2400 switches with firmware 4.2

2021-current

CVE-2019-7127 - Adobe Acrobat and Reader versions 2019.010.20098 and earlier, 2019.010.20

2021-current

CVE-2020-10978 - GitLab EE/CE 8.11 to 12.9 is leaking information on Issues opened in a pu