Карточка уязвимости
Характеристики уязвимости
Уровень опасности
Оценка CVSS
Производитель ПО
Наименование ПО
SAP Notes
(1503108-3)
SAP Support Packages
(SAPKB71106, SAPKB72004, SAPKB73001)
Описание
Programs PKRT_DEPS_ANALYSIS and PKRT_DEPS_ANALYSIS_PREPARE fail to correctly validate the file name specified by a user and then write to and read from that file. This means that an attacker can potentially overwrite data on the remote system.
Как исправить
Install below mentioned support package, this disables programs PKRT_DEPS_ANALYSIS and PKRT_DEPS_ANALYSIS_PREPARE.
Ссылки