Description
SAP Business Process Automation (BPA) By Redwood, 9.0, 9.1, allows an attacker to exploit insufficient validation of path information provided by users, thus characters representing 'traverse to parent directory' are passed through to the file APIs.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-14221 | SAP Business Process Automation (BPA) By Redwood, 9.0, 9.1, allows an attacker to exploit insufficient validation of path information provided by users, thus characters representing 'traverse to parent directory' are passed through to the file APIs. |
References
History
No history.
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2024-08-05T04:14:39.566Z
Reserved: 2017-12-15T00:00:00.000Z
Link: CVE-2018-2366
No data.
Status : Modified
Published: 2018-03-14T19:29:00.203
Modified: 2024-11-21T04:03:41.310
Link: CVE-2018-2366
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD