SAP SAPCAR allows local users to change the permissions of arbitrary files and consequently gain privileges via a hard link attack on files extracted from an archive, possibly related to SAP Security Note 2327384.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Sapcar_archive_tool | Sap | - (including) | - (including) |