CVE-2020-26836

Severity CVSS v4.0:
Pending analysis
Type:
CWE-601 URL Redirection to Untrusted Site ('Open Redirect')
Publication date:
09/12/2020
Last modified:
17/06/2021

Description

SAP Solution Manager (Trace Analysis), version - 720, allows for misuse of a parameter in the application URL leading to Open Redirect vulnerability, an attacker can enter a link to malicious site which could trick the user to enter credentials or download malicious software, as a parameter in the application URL and share it with the end user who could potentially become a victim of the attack.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:sap:solution_manager:7.20:*:*:*:*:*:*:*