Security Advisory

CVE-2020-6202

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2020-03-10 20:19:23
Last updated 2024-08-04 08:55:21
Assigner sap
CVSS score 5.5
State PUBLISHED

Description

SAP NetWeaver Application Server Java (User Management Engine), versions- 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50; does not sufficiently validate the LDAP data source configuration XML document accepted from an untrusted source, leading to Missing XML Validation.