EXPOSURES › CVE-2016-3976
CVE-2016-3976
HIGH ⌖ ON CISA KEV · EXPLOITEDSAP NetWeaver's CrashFileDownloadServlet allowed remote attackers to read arbitrary files via directory traversal.
A directory traversal flaw in SAP NetWeaver's CrashFileDownloadServlet let attackers read files from the server's filesystem. DIBs must patch SAP NetWeaver immediately, as this flaw was actively exploited in the wild and could expose sensitive data or serve as a foothold for further compromise.
Shame score — A directory traversal vulnerability in a widely deployed enterprise platform was actively exploited in the wild, indicating a failure to patch known or easily discoverable flaws.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
SAP NetWeaver Application Server Java Platforms contains a directory traversal vulnerability via a ..\ (dot dot backslash) in the fileName parameter to CrashFileDownloadServlet. This allows remote attackers to read files.
"SAP NetWeaver Application Server Java Platforms contains a directory traversal vulnerability via a ..\ (dot dot backslash) in the fileName parameter to CrashFileDownloadServlet. This allows remote attackers to read files."
| PRODUCT | STATUS |
|---|---|
| SAP NS2 Cloud Intelligent Enterprise SAP National Security Services Inc. (SAP NS2) |
Authorized |
| SAP NS2 Secure Node with SuccessFactors Suite - DoD SAP National Security Services Inc. (SAP NS2) |
Authorized |