SAP Security Note
Medium priority
SAP security note 1883543, "Directory traversal in CA-MDG-ML", is a program error note released on 17.02.2014. Below are the symptom and SAP recommended solution.
Description
Symptom
Directory traversal with read-write or write authorization: CA-MDG-ML contains a vulnerability through which an attacker can potentially write arbitrary files to the remote server, possibly corrupting data or altering system behavior.
Solution
Implement the attached corrections.
Reason and prerequisites
Directory traversal with read-write or write authorization: CA-MDG-ML fails to correctly validate the path to which a user-submitted file is written. As a result, an attacker can potentially overwrite data in the remote system. Furthermore, an attacker can exploit an error in the authorization check to read data from the system.
CVSS
Score 0
Full note on SAP: SAP Support Launchpad note 1883543
Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].
