MEDIUM
Directory traversal vulnerability in SAP NetWeaver 7.x allows remote attackers to read arbitrary files via unspecified vectors
Published Sep 16, 2013
5.0
MEDIUMCVSS 2.0
EPSS 2.06%
Description
Directory traversal vulnerability in SAP NetWeaver 7.x allows remote attackers to read arbitrary files via unspecified vectors.
Affected products
No data.
OR
- 7.0
- 7.0
- 7.0
- 7.0
- 7.0
- 7.01
- 7.02
- 7.03
- 7.10
- 7.30
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (8)
- http://en.securitylab.ru/lab/PT-2012-24 x_refsource_MISC
- http://osvdb.org/97350 vdb-entryx_refsource_OSVDB
- http://scn.sap.com/docs/DOC-8218 x_refsource_CONFIRM
- http://secunia.com/advisories/54809 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://www.securityfocus.com/bid/62391 vdb-entryx_refsource_BID
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2013-5587 Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/87121 vdb-entryx_refsource_XF
- https://websmp230.sap-ag.de/sap/support/notes/1779578 x_refsource_MISC
| Link | Providers | Tags |
|---|---|---|
| http://en.securitylab.ru/lab/PT-2012-24 | x_refsource_MISC | |
| http://osvdb.org/97350 | vdb-entryx_refsource_OSVDB | |
| http://scn.sap.com/docs/DOC-8218 | x_refsource_CONFIRM | |
| http://secunia.com/advisories/54809 | third-party-advisoryx_refsource_SECUNIAVendor Advisory | |
| http://www.securityfocus.com/bid/62391 | vdb-entryx_refsource_BID | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2013-5587 | Advisory | |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/87121 | vdb-entryx_refsource_XF | |
| https://websmp230.sap-ag.de/sap/support/notes/1779578 | x_refsource_MISC |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Sep 16, 2013
Updated Aug 6, 2024
Reserved Sep 16, 2013
Link CVE-2013-5751
CISA Vulnrichment
Updated n/a
ENISA EUVD
EUVD-2013-5587 Assigner mitre
Published Sep 16, 2013
Updated Aug 6, 2024
Exploited since n/a
Link EUVD-2013-5587