Home
HIGH: 7.7 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:NDefault status
unaffected
ST-PI 2008_1_700
affected
2008_1_710
affected
740
affected
Description
Due to directory traversal vulnerability, an authorized attacker could gain access to some critical information by using RFC enabled function module. Upon successful exploitation, they could read files from any managed system connected to SAP Solution Manager, leading to high impact on confidentiality. There is no impact on integrity or availability.
Problem types
CWE-862: Missing Authorization
Product status
ST-PI 2008_1_700
2008_1_710
740
References
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.