SAP Solution Manager (Trace Analysis), version 7.20, allows an attacker to inject superflous data that can be displayed by the application, due to Incomplete XML Validation. The application shows additional data that do not actually exist.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: sap

Published: 2020-06-10T12:44:06

Updated: 2020-06-10T12:44:06

Reserved: 2020-01-08T00:00:00


Link: CVE-2020-6260

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2020-06-10T13:15:17.917

Modified: 2020-06-16T14:06:51.733


Link: CVE-2020-6260

JSON object: View

cve-icon Redhat Information

No data.

CWE