Session Fixation Vulnerability in SAP Disclosure Management 10.1
CVE-2020-6290
4.2MEDIUM
What is CVE-2020-6290?
SAP Disclosure Management 10.1 is susceptible to Session Fixation attacks, where an attacker can manipulate users into adopting a predefined session ID. This flaw allows malicious actors to maintain control over user sessions, potentially leading to unauthorized access and sensitive information exposure. Proper session management and user awareness are critical to mitigating these risks.
Affected Version(s)
SAP Disclosure Management < 1.0