Skip to main content

CVE-2020-6181

Severity Medium
Score 5.8/10

Summary

Under some circumstances the SAML SSO implementation in the SAP NetWeaver (SAP_BASIS versions 702, 730, 731, 740 and SAP ABAP Platform (SAP_BASIS versions 750, 751, 752, 753, 754), allows an attacker to include invalidated data in the HTTP response header sent to a Web user, leading to HTTP Response Splitting vulnerability.

  • LOW
  • NETWORK
  • LOW
  • CHANGED
  • NONE
  • NONE
  • NONE
  • NONE

References

Advisory Timeline

  • Published