CVE-2020-6287: SAP NetWeaver Missing Authentication for Critical Function
SAP NetWeaver Missing Authentication for Critical Function Vulnerability. SAP NetWeaver Application Server Java Platforms contains a missing authentication for critical function vulnerability allowing unauthenticated access to execute configuration tasks and create administrative users.
- CISA KEV-listed (remediation due 2022-05-03)
- EPSS 94.4% (100.0% percentile)