SAP Solution Manager (Trace Analysis), version 7.20, allows an attacker to inject superflous data that can be displayed by the application, due to Incomplete XML Validation. The application shows additional data that do not actually exist.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: sap

Published: 2020-06-10T12:44:06

Updated: 2024-08-04T08:55:22.192Z

Reserved: 2020-01-08T00:00:00

Link: CVE-2020-6260

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-06-10T13:15:17.917

Modified: 2020-06-16T14:06:51.733

Link: CVE-2020-6260

cve-icon Redhat

No data.