SAP Knowledge Base Article - Preview

3456692 - [CVE-2023-20860] Spring Framework Vulnerability in Introscope Enterprise Manager

Symptom

Vulnerability (CVE-2023-20860) is detected in Spring Framework running version 6.0.0 - 6.0.6 or 5.3.0 - 5.3.25, which is used in Introscope Enterprise Manager. The vulnerability may cause potential risks for a security bypass.


Read more...

Environment

  • Introscope Enterprise Manager 10.X

Product

SAP Solution Manager 7.2

Keywords

vulnerability, CVE-2023-20860, Introscope Enterprise Manager, Introscope EM, Introscope, Spring Framework, Spring MVC, Spring, mvcRequestMatcher. , KBA , XX-PART-WILY , Introscope by CA Technologies , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.