SAP Security Note
Medium priority
SAP security note 2880744, “[CVE-2020-6181] HTTP Response Splitting vulnerability in SAP NetWeaver and ABAP Platform”, released on February 10, 2020. Below are the symptom and SAP recommended solution.
Description
Symptom
Under certain circumstances, the SAML SSO implementation in the ABAP Platform allows an attacker to include invalidated data in the HTTP response header sent to a web user. Successful exploitation of this vulnerability may lead to advanced attacks, including cross-site scripting and page hijacking.
Solution
The correction addresses the issue by recognizing and appropriately handling the inclusion of invalidated data. To mitigate this vulnerability, implement the relevant Support Package or follow the correction instructions provided in this SAP Note.
Reason and prerequisites
An error exists in the SAML SSO implementation.
CVSS
Score 5.8 Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N
Full note on SAP: SAP Support Launchpad note 2880744
Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].
