CVE-2020-6318

Description

A Remote Code Execution vulnerability exists in the SAP NetWeaver (ABAP Server, up to release 7.40) and ABAP Platform (> release 7.40).Because of this, an attacker can exploit these products via Code Injection, and potentially enabling to take complete control of the products, including viewing, changing, or deleting data by injecting code into the working memory which is subsequently executed by the application. It can also be used to cause a general fault in the product, causing the products to terminate.

Risk Information

Base Score
7.2
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
6.134

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2020-6296,CVE-2020-6310,CVE-2020-6318,CVE-2024-22131 are affected in SAP ABAP Platform (ABAP Build Framework) 700Windows
Multiple Vulnerabilities are affected in SAP ABAP Platform (ABAP Build Framework) 701Windows
Vulnerabilities CVE-2020-6296,CVE-2020-6310,CVE-2020-6318,CVE-2024-22131 are affected in SAP ABAP Platform (ABAP Build Framework) 702Windows
Vulnerabilities CVE-2020-6296,CVE-2020-6310,CVE-2020-6318 are affected in SAP ABAP Platform (ABAP Build Framework) 710Windows
Vulnerabilities CVE-2020-6296,CVE-2020-6310,CVE-2020-6318 are affected in SAP ABAP Platform (ABAP Build Framework) 711Windows
Multiple Vulnerabilities are affected in SAP ABAP Platform (ABAP Build Framework) 740Windows
Multiple Vulnerabilities are affected in SAP ABAP Platform (ABAP Build Framework) 750Windows
Multiple Vulnerabilities are affected in SAP ABAP Platform (ABAP Build Framework) 751Windows
Multiple Vulnerabilities are affected in SAP ABAP Platform (ABAP Build Framework) 753Windows
Multiple Vulnerabilities are affected in SAP ABAP Platform (ABAP Build Framework) 755Windows
Vulnerabilities CVE-2020-6299,CVE-2020-6318,CVE-2021-44231,CVE-2023-25615 are affected in SAP ABAP Platform (ABAP Build Framework) 754Windows
Vulnerabilities CVE-2020-6318 are affected in SAP ABAP Platform (ABAP Build Framework) 730Windows
Vulnerabilities CVE-2020-6318,CVE-2024-22131 are affected in SAP ABAP Platform (ABAP Build Framework) 731Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234