Skip links
Picture of Vahagn Vardanian

Vahagn Vardanian

Co-founder and CTO of RedRays

Directory traversal in Browse Deployment, SAP security note 1705800

SAP Note 1705800

SAP security note 1705800, "Directory Traversal in Browse Deployment". Below are the symptom, SAP recommended solution and the affected software components.

Description

Symptom

The Portal contains a vulnerability that allows an attacker to perform directory traversal, potentially writing arbitrary files to the remote server. This could lead to data corruption or alteration of system behavior.

An attacker can exploit the Portal's failure to properly validate file paths, directing the program to access arbitrary files on the system and disclosing their contents.

Solution

To address this security issue, apply the appropriate Support Package Patch (SP Patch Level) as detailed in the Security Note.

If you are using SAP Enterprise Portal 7.10 or above, the fix is already included in Note 1630293.

CVSS

Score 4.9 Vector: AV:N/AC:H/AU:S/C:C/I:N/A:N

References

Affected components

  • EP-PSERV 7.00 to 7.02, 6.0_640
  • Portal Platform 6.0_640
  • SAP Enterprise Portal (On Premise) > Portal Runtime (EP-PIN-PRT)

Full note on SAP: SAP Support Launchpad note 1705800

Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].

Explore More