SAP security note 1779092, "Directory traversal in the portal SoapApplication," is a note covering the symptom, SAP recommended solution and the affected software components.
Description
Symptom
Directory-Traversal, Read-only directory traversal. SoapApplication contains a vulnerability through which an attacker can potentially read arbitrary files on the remote server, possibly disclosing confidential information.
Solution
To resolve this vulnerability, apply the appropriate Support Package Patch for your software component version. You can find the relevant patches below:
- PORTAL BASIS 7.31
- PORTAL BASIS 7.30
- PORTAL BASIS 7.20
- PORTAL BASIS 7.11
- PORTAL FRAMEWORK 7.01
- PORTAL FRAMEWORK 7.02
- PORTAL FRAMEWORK 7.00
- PORTAL PLATFORM 6.0_640
CVSS
Score 7.8 Vector: AV:N/AC:L/AU:N/C:C/I:N/A:N
References
- SAP Note 1783714: Central Note for Portal Platform in SAP NW7.0 EhP2 SP14
- SAP Note 1782247: Central Note for NetWeaver 7.31 SP07 EP / EPC
- SAP Note 1781406: Central Note for Portal Platform in SAP NW7.1 EhP1 SP12
- SAP Note 1779149: Central Note for Portal Platform in SAP NW7.0 EhP1 SP14
- SAP Note 1776248: SAP NetWeaver CE Portal Platform NW7.10 SP17
- SAP Note 1767711: Central Note for Portal Platform in SAP NW7.0 SP29
- SAP Note 1743951: Central Note for Portal Platform in SAP NW7.2 SP9
- SAP Note 1739472: Central Note for NetWeaver 7.30 SP09 EP / EPC
Affected components
- EPBC2 7.00 to 7.02
- EPBC2 7.10 to 7.10
- EP-PSERV 6.0_640 to 6.0_640
- EP-BASIS 7.10 to 7.11
- EP-BASIS 7.20 to 7.20
- EP-BASIS 7.30 to 7.30
- EP-BASIS 7.31 to 7.31
Full note on SAP: SAP Support Launchpad note 1779092
Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].
