SAP security note 1590837, "Directory Traversal in Deposits Management", is a note. Below are the symptom and SAP recommended solution.
Description
Symptom
The connection of Deposit Management to SAP Business Warehouse contains a vulnerability through which a malicious user can potentially read arbitrary files on the remote server, possibly disclosing confidential information.
Solution
Implement the attached corrections.
Reason and prerequisites
The connection of Deposit Management to SAP Business Warehouse fails to correctly validate the path that is used to reference a file that is read from the remote server. As a result, a malicious user can potentially direct the program to an arbitrary other file in the system, disclosing its contents.
References
Full note on SAP: SAP Support Launchpad note 1590837
Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].
