CISA Known Exploited Vulnerability

CVE-2020-6207

SAP · Solution Manager

SAP Solution Manager Missing Authentication for Critical Function Vulnerability

Date added
BOD 22-01 due date
CWE CWE-306
Ransomware Unknown

CISA description

SAP Solution Manager User Experience Monitoring contains a missing authentication for critical function vulnerability which results in complete compromise of all SMDAgents connected to the Solution Manager.

Required action

Apply updates per vendor instructions.