SQL Injection Vulnerability in SAP Master Data Governance
CVE-2020-6249
Key Information:
- Vendor
SAP
- Status
- Vendor
- CVE Published:
- 12 May 2020
What is CVE-2020-6249?
The vulnerability within SAP Master Data Governance arises from the improper handling of crafted database queries via the admin backend report. This imperfection allows attackers to execute unauthorized queries, potentially exposing sensitive data and back-end database structures. The affected versions suffer from flawed input validation, which can be exploited to manipulate the database, resulting in significant security risks. Organizations using these versions should prioritize remediation to mitigate potential attacks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
SAP Master Data Governance (S4CORE) < 101
SAP Master Data Governance (S4FND) < 102 < 102
SAP Master Data Governance (S4FND) < 103 < 103
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved