Certains cookies sensibles dans Disclosure Management SAP, la version 10.1, il manque HttpOnly drapeau, conduisant à biscuit sensible sans Http seul drapeau.
https://launchpad.support.sap.com/#/notes/2758000
https://launchpad.support.sap.com/#/notes/2758000
https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=552599675
https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=552599675
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-6267