Security Advisory
CVE-2020-6197
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
SAP Enable Now, before version 1908, does not invalidate session tokens in a timely manner. The Insufficient Session Expiration may allow attackers with local access, for instance, to still download the portables.