Critical severity10.0NVD Advisory· Published Nov 10, 2020· Updated Jun 17, 2026
CVE-2020-26822
CVE-2020-26822
Description
SAP Solution Manager (JAVA stack), version - 7.20, allows an unauthenticated attacker to compromise the system because of missing authorization checks in the Outside Discovery Configuration Service, this has an impact to the integrity and availability of the service.
Affected products
3cpe:2.3:a:sap:solution_manager:7.20:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:sap:solution_manager:7.20:*:*:*:*:*:*:*
- (no CPE)range: 7.20
- SAP SE/SAP Solution Manager (JAVA stack)v5Range: < 7.20
Patches
Vulnerability mechanics
References
2- launchpad.support.sap.comnvdPermissions RequiredVendor Advisory
- wiki.scn.sap.com/wiki/pages/viewpage.actionnvdVendor Advisory
News mentions
0No linked articles in our index yet.