← Back

CVE-2021-44232

nvd nist
Published: Dec 14, 2021Modified: Nov 21, 2024

JSON object

Loading...
7.7
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
Exploitability: 3.1 / Impact: 4.0
Source: NVD

Description

SAF-T Framework Transaction SAFTN_G allows an attacker to exploit insufficient validation of path information provided by normal user, leading to full server directory access. The attacker can see the whole filesystem structure but cannot overwrite, delete, or corrupt arbitrary files on the server.

Affected (14)

Products: Sap: Saf T Framework
1 product
Saf T Framework
Configuration A
14 vulnerable
Vulnerable SoftwareAffected Versions
Sap
Version 103
Version 104
Version 105
Version 602
Version 603
Version 604
Version 605
Version 606
Version 618
Version 720
Version 730
Version s4core_102
Version sap_appl_600
Version sap_fin_617

References (4)

Source: cna@sap.com
Vendor Advisory
Source: cna@sap.com
Permissions RequiredVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Permissions RequiredVendor Advisory

Timeline

No history available yet.