Posted by Onapsis Research via Fulldisclosure on Apr 05
# Onapsis Security Advisory 2021-0004: [CVE-2020-26820] – SAP Java OS
Remote Code Execution
## Impact on Business
A malicious authenticated attacker could abuse some particular services
exposed
by the SAP JAVA Netweaver allowing them to execute commands in the
underlying
operating system.
## Advisory Information
– Security Advisory ID: ONAPSIS-2021-0004
– Vulnerability Submission ID: 847
– Researcher: Pablo Artuso
## Vulnerability…
– Read More – Full Disclosure