CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2020-26811

MEDIUM
5.3
CVSS Severity Score
EPSS Score0.0910%
EPSS Percentile34.20th
Published2020年11月10日
Last Modified2024年11月21日

Vulnerability Description

SAP Commerce Cloud (Accelerator Payment Mock), versions - 1808, 1811, 1905, 2005, allows an unauthenticated attacker to submit a crafted request over a network to a particular SAP Commerce module URL which will be processed without further interaction, the crafted request leads to Server Side Request Forgery attack which could lead to retrieval of limited pieces of information about the service with no impact on integrity or availability.

Affected Platforms (CPE)

📦
Sap

Commerce Cloud \(accelerator Payment Mock\)

= 1808
📦
Sap

Commerce Cloud \(accelerator Payment Mock\)

= 1811
📦
Sap

Commerce Cloud \(accelerator Payment Mock\)

= 1905
📦
Sap

Commerce Cloud \(accelerator Payment Mock\)

= 2005

References & Advisories

相關漏洞威脅