Directory traversal vulnerability in sqlfopenc for web-tools in SAP DB before 7.4.03.30 allows remote attackers to read arbitrary files via .. (dot dot) sequences in a URL.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Sap_db |
Sap |
* |
7.4.03.29 (including) |
References