Skip links
Picture of Vahagn Vardanian

Vahagn Vardanian

Co-founder and CTO of RedRays

SMBRelay in SAP ALV, SAP security note 1446476

SAP Note 1446476

SAP security note 1446476, "SMBRelay in SAP ALV", is a note. Below are the symptom, SAP recommended solution and the affected software components.

Description

Symptom

The ALV contains a vulnerability that makes it possible for a malicious user to perform an SMBRelay attack. An attacker may use this to obtain control over the computer of the user in the worst case scenario.

Solution

Implement the source code corrections in accordance with the correction instructions.

Reason and prerequisites

The SAP ALV fails to correctly validate UNC paths that are used to reference files that are read from remote servers. An attacker may use this vulnerability by redirecting the user to a compromised SMB share.

CVSS

Score 2.3 Vector: AV:A/AC:M/AU:S/C:P/I:N/A:N

References

Affected components

  • SAP_BASIS 640 to 640
  • SAP_BASIS 700 to 702
  • SAP_BASIS 710 to 730

Full note on SAP: SAP Support Launchpad note 1446476

Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].

Explore More