CVE-2020-26836: SAP Solution Manager

Medium severity, CVSS 6.1. EPSS: 2.2% chance of exploitation in the next 30 days.

SAP Solution Manager (Trace Analysis), version - 720, allows for misuse of a parameter in the application URL leading to Open Redirect vulnerability, an attacker can enter a link to malicious site which could trick the user to enter credentials or download malicious software, as a parameter in the application URL and share it with the end user who could potentially become a victim of the attack.

Affected products

  • SAP Solution Manager: version 7.20 only

Published 2020-12-09. Last modified 2026-06-17.