SAP security note 1506767, "Directory Traversal in Transport Organizer Web UI". Below are the symptom, SAP recommended solution and the affected software components.
Description
Symptom
The Transport Organizer Web UI contains a vulnerability that permits unauthorized reading of arbitrary files on the server, which may result in sensitive information being exposed.
Solution
To mitigate this vulnerability, apply the correction instructions provided in this security note or update your system to a supported package level. Ensure that you follow the correction instructions carefully to secure your system against potential exploits.
Reason and prerequisites
The vulnerability arises because the Transport Organizer Web UI does not properly validate the file paths used to reference files on the remote server. This flaw allows an attacker to manipulate the file path to access unauthorized files.
References
Affected components
- NW701 SP07
- NW702 SP01-SP05
- NW720 SP01-SP03
- NW730 SP00-SP01
This security note is not applicable to other support package levels beyond those listed above, as the fixed application/code was delivered with the specified releases.
Full note on SAP: SAP Support Launchpad note 1506767
Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].
