CVE-2020-6212
Published Apr 24, 2020
Last updated 5 years ago
Overview
- Description
- Egypt localized withholding tax reports Clearing of Liabilities and Remittance Statement and Summary in SAP ERP (versions 618, 730, EAPPLGLO 607) and S/4 HANA (versions 100, 101, 102, 103, 104) do not perform necessary authorization checks for an authenticated user, allowing reading or modification of some tax reports, due to Missing Authorization Check.
- Source
- cna@sap.com
- NVD status
- Analyzed
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 5.4
- Impact score
- 2.5
- Exploitability score
- 2.8
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
- Severity
- MEDIUM
CVSS 3.0
- Type
- Secondary
- Base score
- 5.4
- Impact score
- 2.5
- Exploitability score
- 2.8
- Vector string
- CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
- Severity
- MEDIUM
CVSS 2.0
- Type
- Primary
- Base score
- 5.5
- Impact score
- 4.9
- Exploitability score
- 8
- Vector string
- AV:N/AC:L/Au:S/C:P/I:P/A:N
Weaknesses
- nvd@nist.gov
- CWE-862
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:sap:erp:607:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "56B0EE10-D5C3-4BA8-A2D5-3BE53F890F0C" }, { "criteria": "cpe:2.3:a:sap:erp:618:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4573BD22-D50B-431E-928A-C495E342D1AE" }, { "criteria": "cpe:2.3:a:sap:erp:730:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2EBA7545-3DC3-45A7-8DF4-35F863C3B985" }, { "criteria": "cpe:2.3:a:sap:s\\/4hana:100:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "11051D6A-FC81-4951-ACDA-BB07D5A5D751" }, { "criteria": "cpe:2.3:a:sap:s\\/4hana:101:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E6FE144C-BAF2-4E45-93EE-D70764BDEFD6" }, { "criteria": "cpe:2.3:a:sap:s\\/4hana:102:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "55BACB30-A607-410E-AB05-E991CC19CE12" }, { "criteria": "cpe:2.3:a:sap:s\\/4hana:103:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "95A0C742-4CBD-46B8-B2B3-5949EFC82A6D" }, { "criteria": "cpe:2.3:a:sap:s\\/4hana:104:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "14A540DA-F234-4EEA-ADE8-4F6306A86C1E" } ], "operator": "OR" } ] } ]