Directory traversal vulnerability in the GetFileList function in the SAP Manufacturing Integration and Intelligence (xMII) component 15.0 for SAP NetWeaver 7.4 allows remote attackers to read arbitrary files via a .. (dot dot) in the Path parameter to /Catalog, aka SAP Security Note 2230978.
                
            Metrics
Affected Vendors & Products
References
        History
                    No history.
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: mitre
Published: 2016-02-16T15:00:00
Updated: 2024-08-05T23:24:49.295Z
Reserved: 2016-02-16T00:00:00
Link: CVE-2016-2389
 Vulnrichment
                        Vulnrichment
                    No data.
 NVD
                        NVD
                    Status : Deferred
Published: 2016-02-16T15:59:03.023
Modified: 2025-04-12T10:46:40.837
Link: CVE-2016-2389
 Redhat
                        Redhat
                    No data.