Medium severity5.9NVD Advisory· Published Oct 20, 2020· Updated Jun 17, 2026
CVE-2020-6369
CVE-2020-6369
Description
SAP Solution Manager and SAP Focused Run (update provided in WILY_INTRO_ENTERPRISE 9.7, 10.1, 10.5, 10.7), allows an unauthenticated attackers to bypass the authentication if the default passwords for Admin and Guest have not been changed by the administrator.This may impact the confidentiality of the service.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
11cpe:2.3:a:sap:focused_run:10.1:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:sap:focused_run:10.1:*:*:*:*:*:*:*
- cpe:2.3:a:sap:focused_run:10.5:*:*:*:*:*:*:*
- cpe:2.3:a:sap:focused_run:10.7:*:*:*:*:*:*:*
- cpe:2.3:a:sap:focused_run:9.7:*:*:*:*:*:*:*
cpe:2.3:a:sap:solution_manager:10.1:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:sap:solution_manager:10.1:*:*:*:*:*:*:*
- cpe:2.3:a:sap:solution_manager:10.5:*:*:*:*:*:*:*
- cpe:2.3:a:sap:solution_manager:10.7:*:*:*:*:*:*:*
- cpe:2.3:a:sap:solution_manager:9.7:*:*:*:*:*:*:*
- (no CPE)
- Range: 9.7, 10.1, 10.5, 10.7
- SAP SE/CA Introscope Enterprise Manager (Affected products: SAP Solution Manager and SAP Focused Run)v5Range: < 9.7
Patches
Vulnerability mechanics
References
4- packetstormsecurity.com/files/163159/SAP-Wily-Introscope-Enterprise-Default-Hard-Coded-Credentials.htmlnvdThird Party Advisory
- seclists.org/fulldisclosure/2021/Jun/31nvdMailing ListThird Party Advisory
- launchpad.support.sap.comnvdPermissions RequiredVendor Advisory
- wiki.scn.sap.com/wiki/pages/viewpage.actionnvdVendor Advisory
News mentions
0No linked articles in our index yet.