SAP security note 1505368, "EHS: Potential Directory Traversal". Below are the symptom, SAP recommended solution and the affected software components.
Description
Symptom
SAP Security Note 1505368 addresses a potential directory traversal vulnerability in the Environment, Health, and Safety (EHS) component. This vulnerability may allow malicious users to read or write arbitrary files on the server, potentially disclosing confidential information or corrupting data.
This note has been updated; refer to SAP Note 1540408 for additional details. The affected functionalities include import and export of specifications, phrase libraries, sources, property trees, report templates, and reports, as well as uploading and downloading of files. During import/export of phrase libraries or sources, the physical path field length is also insufficient.
Solution
- Apply the prerequisite corrections from SAP Note 1497003.
- Define and validate logical file names and paths for the affected programs, as specified in the correction instructions.
Reason and prerequisites
The vulnerability exists due to flaws in the programs that handle file operations, allowing unauthorized access to the server's file system. Before implementing this security note, ensure that the corrections from SAP Note 1497003 are applied.
CVSS
Score 0
References
- SAP Note 1793271: Runtime error during data import and export
- SAP Note 1552798: Directory Traversal in EH&S
- SAP Note 1540408: Update #1 for security Note 1505368
- SAP Note 1529298: Import and export: Changes to the documentation
- SAP Note 1497003: Potential directory traversals in applications
Affected components
- Environment, Health, and Safety / Product Compliance > Product Safety (EHS-SAF)
Full note on SAP: SAP Support Launchpad note 1505368
Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].




