Directory traversal vulnerability in Internet Graphics Server in SAP before 6.40 Patch 11 allows remote attackers to read arbitrary files via .. sequences in an HTTP GET request.
Affected Software
| Name | Vendor | Start Version | End Version |
|---|
| Sap_r_3 | Sap | * | 6.30 (including) |
References