PT-2020-16496 · Sap · Sap Commerce Cloud

Published

2020-11-10

·

Updated

2021-06-17

·

CVE-2020-26809

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions SAP Commerce Cloud versions 1808, 1811, 1905, 2005
Description The issue allows an attacker to bypass existing authentication and permission checks via the "/medias" endpoint, gaining access to Secure Media folders. These folders could contain sensitive files, resulting in the disclosure of sensitive information and impacting system configuration confidentiality.
Recommendations For versions 1808, 1811, 1905, 2005, consider disabling access to the "/medias" endpoint as a temporary workaround until a patch is available. Restrict access to Secure Media folders to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Incorrect Default Permissions

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-26809

Affected Products

Sap Commerce Cloud