Skip links
Picture of Vahagn Vardanian

Vahagn Vardanian

Co-founder and CTO of RedRays

Directory traversal in BW-WHM-DST, SAP security note 1720634

SAP Note 1720634

SAP security note 1720634, "Directory traversal in BW-WHM-DST". Below are the symptom and SAP recommended solution.

Description

Symptom

BW-WHM-DST contains a vulnerability through which an attacker can potentially write arbitrary files to the remote server, possibly corrupting data or altering system behavior.

Solution

To address this vulnerability, apply the appropriate Support Package for your SAP NetWeaver BW version as detailed below.

Before applying the correction instructions, ensure you review SAP Note 875986 for transaction SNOTE.

Reason and prerequisites

BW-WHM-DST fails to correctly validate the path to which a user-submitted file is written. As a result, an attacker can potentially overwrite data in the remote system.

Full note on SAP: SAP Support Launchpad note 1720634

Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].

Explore More