Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-88974
HistoryOct 13, 2022 - 12:00 a.m.

SAP Manufacturing Execution Path Traversal Vulnerability

2022-10-1300:00:00
China National Vulnerability Database
www.cnvd.org.cn
26
sap manufacturing execution
path traversal
mes solution
vulnerability
remote server access

EPSS

0.003

Percentile

69.3%

SAP Manufacturing Execution is an integrated Manufacturing Execution System (MES) solution for discrete manufacturing processes from SAP, Germany. SAP Manufacturing Execution versions 15.1, 15.2, and 15.3 contain a path traversal vulnerability that stems from insufficient validation of the file path request parameter, which could be exploited by an attacker to read the contents of arbitrary directory files on a remote server.

EPSS

0.003

Percentile

69.3%

Related for CNVD-2022-88974