SAP 3D Visual Enterprise Viewer, version 9, allows an attacker to send certain manipulated file to the victim, which can lead to leakage of sensitive information when the victim loads the malicious file into the VE viewer, leading to Information Disclosure.
References
Link | Resource |
---|---|
https://launchpad.support.sap.com/#/notes/2973497 | Permissions Required Vendor Advisory |
https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=558632196 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: sap
Published: 2020-10-20T13:26:23
Updated: 2020-10-20T13:26:23
Reserved: 2020-01-08T00:00:00
Link: CVE-2020-6315
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-10-20T14:15:14.197
Modified: 2020-10-22T13:59:18.383
Link: CVE-2020-6315
JSON object: View
Redhat Information
No data.
CWE