CVE-2020-6324: SAP NetWeaver As Abap Business Server Pages
Medium severity, CVSS 6.1. EPSS: 0.9% chance of exploitation in the next 30 days.
SAP Netweaver AS ABAP(BSP Test Application sbspext_table), version-700,701,720,730,731,740,750,751,752,753,754,755, allows an unauthenticated attacker to send polluted URL to the victim, when the victim clicks on this URL, the attacker can read, modify the information available in the victim�s browser leading to Reflected Cross Site Scripting.
Affected products
- SAP NetWeaver As Abap Business Server Pages: version 700 only; version 701 only; version 702 only; version 730 only; version 731 only; version 740 only; …
Published 2020-09-09. Last modified 2026-06-17.