AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2020-6366

MEDIUM · CVSS 6.5 EPSS 1.07%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2020-10-20 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2020-6366
Severity
MEDIUM
CVSS
6.5
EPSS
1.07%

Original NVD Description

SAP NetWeaver (Compare Systems) versions - 7.20, 7.30, 7.40, 7.50, does not sufficiently validate uploaded XML documents. An attacker with administrative privileges can retrieve arbitrary files including files on OS level from the server and/or can execute a denial-of-service.