AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2020-6263

CRITICAL · CVSS 9.8 EPSS 1.44%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2020-06-10 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2020-6263
Severity
CRITICAL
CVSS
9.8
EPSS
1.44%
Java

Original NVD Description

Standalone clients connecting to SAP NetWeaver AS Java via P4 Protocol, versions (SAP-JEECOR 7.00, 7.01; SERVERCOR 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50; CORE-TOOLS 7.00, 7.01, 7.02, 7.05, 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50) do not perform any authentication checks for operations that require user identity leading to Authentication Bypass.