Vulnerability Details CVE-2020-6265
SAP Commerce, versions - 6.7, 1808, 1811, 1905, and SAP Commerce (Data Hub), versions - 6.7, 1808, 1811, 1905, allows an attacker to bypass the authentication and/or authorization that has been configured by the system administrator due to the use of Hardcoded Credentials.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 68.2%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2020-6265
-
cpe:2.3:a:sap:commerce:1808
-
cpe:2.3:a:sap:commerce:1811
-
cpe:2.3:a:sap:commerce:1905
-
cpe:2.3:a:sap:commerce:6.7
-
cpe:2.3:a:sap:commerce_data_hub:1808
-
cpe:2.3:a:sap:commerce_data_hub:1811
-
cpe:2.3:a:sap:commerce_data_hub:1905
-
cpe:2.3:a:sap:commerce_data_hub:6.7