SAP Commerce, versions - 6.7, 1808, 1811, 1905, and SAP Commerce (Data Hub), versions - 6.7, 1808, 1811, 1905, allows an attacker to bypass the authentication and/or authorization that has been configured by the system administrator due to the use of Hardcoded Credentials.
2020-06-09T19:15:10.543
2024-11-21T05:35:24.363
Modified
CVSSv3.1: 9.8 (CRITICAL)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | sap | commerce | 6.7 | Yes |
Application | sap | commerce | 1808 | Yes |
Application | sap | commerce | 1811 | Yes |
Application | sap | commerce | 1905 | Yes |
Application | sap | commerce_data_hub | 6.7 | Yes |
Application | sap | commerce_data_hub | 1808 | Yes |
Application | sap | commerce_data_hub | 1811 | Yes |
Application | sap | commerce_data_hub | 1905 | Yes |