CVE-2020-6244

SAP Business Client, version 7.0, allows an attacker after a successful social engineering attack to inject malicious code as a DLL file in untrusted directories that can be executed by the application, due to uncontrolled search path element. An attacker could thereby control the behavior of the application.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:sap:business_client:7.0:*:*:*:*:*:*:*

Information

Published : 2020-05-12 11:15

Updated : 2020-05-18 06:59


NVD link : CVE-2020-6244

Mitre link : CVE-2020-6244


JSON object : View

CWE
CWE-427

Uncontrolled Search Path Element

Advertisement

dedicated server usa

Products Affected

sap

  • business_client