Medium severity6.1NVD Advisory· Published Dec 9, 2020· Updated Jun 17, 2026
CVE-2020-26836
CVE-2020-26836
Description
SAP Solution Manager (Trace Analysis), version - 720, allows for misuse of a parameter in the application URL leading to Open Redirect vulnerability, an attacker can enter a link to malicious site which could trick the user to enter credentials or download malicious software, as a parameter in the application URL and share it with the end user who could potentially become a victim of the attack.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:sap:solution_manager:7.20:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:sap:solution_manager:7.20:*:*:*:*:*:*:*
- (no CPE)range: 720
- SAP SE/SAP Solution Manager (Trace Analysis)v5Range: < 720
Patches
Vulnerability mechanics
References
4- packetstormsecurity.com/files/163136/SAP-Solution-Manager-7.2-ST-720-Open-Redirection.htmlnvdThird Party Advisory
- seclists.org/fulldisclosure/2021/Jun/25nvdMailing ListThird Party Advisory
- launchpad.support.sap.comnvdPermissions RequiredVendor Advisory
- wiki.scn.sap.com/wiki/pages/viewpage.actionnvdVendor Advisory
News mentions
0No linked articles in our index yet.