Skip links
Picture of Vahagn Vardanian

Vahagn Vardanian

Co-founder and CTO of RedRays

CVE-2020-6181 HTTP Response Splitting vulnerability in SAP NetWeaver and ABAP Platform, SAP security note 2880744

SAP Note 2880744
SAP Security Note
Medium priority

SAP security note 2880744, “[CVE-2020-6181] HTTP Response Splitting vulnerability in SAP NetWeaver and ABAP Platform”, released on February 10, 2020. Below are the symptom and SAP recommended solution.

ComponentBasis Components > Security – Read KBA 2985997 for subcomponents > Authentication > SAML 2.0 for ABAP
PriorityCorrection with medium priority
TypeSAP Security Note
StatusReleased for Customer
Released onFebruary 10, 2020

Description

Symptom

Under certain circumstances, the SAML SSO implementation in the ABAP Platform allows an attacker to include invalidated data in the HTTP response header sent to a web user. Successful exploitation of this vulnerability may lead to advanced attacks, including cross-site scripting and page hijacking.

Solution

The correction addresses the issue by recognizing and appropriately handling the inclusion of invalidated data. To mitigate this vulnerability, implement the relevant Support Package or follow the correction instructions provided in this SAP Note.

Reason and prerequisites

An error exists in the SAML SSO implementation.

CVSS

Score 5.8 Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N

Full note on SAP: SAP Support Launchpad note 2880744

Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].

Explore More