Back to search
CVE-2022-39802
Published: Oct 11, 2022
Modified: Aug 3, 2024
PUBLISHED
Description
SAP Manufacturing Execution - versions 15.1, 15.2, 15.3, allows an attacker to exploit insufficient validation of a file path request parameter. The intended file path can be manipulated to allow arbitrary traversal of directories on the remote server. The file content within each directory can be read which may lead to information disclosure.
| Vendor | Product | Versions |
|---|---|---|
SAP SE | SAP Manufacturing Execution | affected 15.1affected 15.2affected 15.3 |
Weaknesses (CWE)
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now