SAP security note 1720634, "Directory traversal in BW-WHM-DST". Below are the symptom and SAP recommended solution.
Description
Symptom
BW-WHM-DST contains a vulnerability through which an attacker can potentially write arbitrary files to the remote server, possibly corrupting data or altering system behavior.
Solution
To address this vulnerability, apply the appropriate Support Package for your SAP NetWeaver BW version as detailed below.
Before applying the correction instructions, ensure you review SAP Note 875986 for transaction SNOTE.
Reason and prerequisites
BW-WHM-DST fails to correctly validate the path to which a user-submitted file is written. As a result, an attacker can potentially overwrite data in the remote system.
Full note on SAP: SAP Support Launchpad note 1720634
Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].




