SAP Security Note
High priority
SAP security note 1617209, "Potential Directory Traversal in XX-CSC-JP", is a note released on 14.11.2011. Below are the symptom, SAP recommended solution and the affected software components.
Description
Symptom
Potential Directory Traversal in Component XX-CSC-JP.
Solution
Apply the relevant Support Package for your Release and refer to Note 1497003 for additional information and instructions. The corrections from Note 1497003 are a prerequisite for implementing this note.
The solution uses the existing logical file name ISJP_INVSUM to validate physical file names in the format /tmp/INVSUM<DATE>_<TIME>, utilized by program ISJPINVSUM20_FORMS.
Important: You must maintain the physical path to the file manually, following the manual correction instructions provided.
Reason and prerequisites
The programs contained in the correction instructions have vulnerabilities that allow a malicious user to potentially read arbitrary files on the remote server, possibly disclosing confidential information.
Some of these programs also allow a malicious user to potentially write arbitrary files on the remote server, which could corrupt data or alter system behavior.
Affected components
- SAP_APPL 604
- SAP_APPL 605
Full note on SAP: SAP Support Launchpad note 1617209
Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].
