Skip links
Picture of Vahagn Vardanian

Vahagn Vardanian

Co-founder and CTO of RedRays

Directory Traversal in RFC modules in classification, SAP security note 1509235

SAP Note 1509235

SAP security note 1509235, "Directory Traversal in RFC modules in classification". Below are the symptom, SAP recommended solution and the affected software components.

Description

Symptom

The RFC modules in classification (function group CLBA) have a vulnerability that permits directory traversal, enabling unauthorized file writes on the remote server.

Solution

Implement the changes as outlined in the advance correction. Additionally, refer to Note 1497003 for prerequisite program changes required by this note.

Reason and prerequisites

Function modules CLBA_CLASSIF_FILE_REMOTE_HOST and CLBA_UPDATE_FILE_REMOTE_HOST do not properly validate the path for user-submitted files. This oversight allows attackers to overwrite data on the remote system.

Prerequisites: SAP_ABA component versions 702 and 730. Installed before applying this note:

References

Affected components

  • SAP_ABA 702
  • SAP_ABA 730

Full note on SAP: SAP Support Launchpad note 1509235

Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].

Explore More