Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2006-0732

Quick assessment

Affected
n/a n/a
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

SAP Business Connector是SAP公司OEM世界著名的中间件厂商Webmethod的中间件产品,允许SAP系统通过开放的无限制的标准与各种不同的应用环境进行集成。 SAP Business Connector(BC)4.6和4.7版本在处理用户请求时存在目录遍历漏洞。远程攻击者可利用此漏洞在非授权读取或删除系统文件。如果将fullName参数更改为/etc/passwd(URL编码)而不是所浏览的<SAP PATH>/packages/SAP/logs/new_sap.log,用户就会得

AI Predicted 4.4 Difficulty: Theoretical EPSS 2.54% · P84
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2006-0732

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
Directory traversal vulnerability in SAP Business Connector (BC) 4.6 and 4.7 allows remote attackers to read or delete arbitrary files via the fullName parameter to (1) sapbc/SAP/chopSAPLog.dsp or (2) invoke/sap.monitor.rfcTrace/deleteSingle. Details will be updated after the grace period has ended. NOTE: SAP Business Connector is an OEM version of webMethods Integration Server. webMethods states that this issue can only occur when the product is installed as root/admin, and if the attacker has access to a general purpose port; however, both are discouraged in the documentation. In addition, the attacker must already have acquired administrative privileges through other means.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
SAP Business Connector路径遍历漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
SAP Business Connector是SAP公司OEM世界著名的中间件厂商Webmethod的中间件产品,允许SAP系统通过开放的无限制的标准与各种不同的应用环境进行集成。 SAP Business Connector(BC)4.6和4.7版本在处理用户请求时存在目录遍历漏洞。远程攻击者可利用此漏洞在非授权读取或删除系统文件。如果将fullName参数更改为/etc/passwd(URL编码)而不是所浏览的<SAP PATH>/packages/SAP/logs/new_sap.log,用户就会得
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
- n/a n/a -

II. Public POCs for CVE-2006-0732

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2006-0732

登录查看更多情报信息。

Vendor Advisories for CVE-2006-0732 (8)

Other References for CVE-2006-0732 (2)

Same Patch Batch · n/a · 2006-02-16 · 17 CVEs total

CVE-2003-0956 Linux kernel O_DIRECT获取原本属于其他用户的敏感信息的漏洞
CVE-2006-0679 PHP-Nuke Your_Account模块远程SQL注入漏洞
CVE-2006-0721 RunCMS PMLite.PHP SQL注入漏洞
CVE-2006-0722 Reamday Enterprises Magic Downloads ‘settings.php’ 多个变量覆盖漏洞
CVE-2006-0723 Reamday Enterprises Magic News Lite Preview.PHP远程文件包含漏洞
CVE-2006-0724 Reamday Enterprises Magic News Lite 多个变量覆盖漏洞
CVE-2006-0725 Plume CMS prepend.php远程文件包含漏洞
CVE-2006-0726 CPG Dragonfly CMS Linking.PHP 跨站脚本攻击漏洞
CVE-2006-0727 MusOX DF MSAnalysis ‘mstrack.php’ SQL注入漏洞
CVE-2006-0728 WebSPELL Search.PHP SQL注入漏洞
CVE-2006-0729 Teca Diary Personal Edition Functions.PHP SQL注入漏洞
CVE-2006-0730 Dovecot双重释放拒绝服务漏洞
CVE-2006-0731 SAP Business Connector Core Fix ‘WmRoot/adapter-index.dsp’输入验证漏洞
CVE-2006-0733 WordPress 跨站脚本攻击漏洞
CVE-2006-0734 Valve Software Half-Life CSTRIKE Server远程拒绝服务漏洞
CVE-2006-0735 M. Blom HTML::BBCode ‘BBcode.pm’ 跨站脚本攻击漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2006-0732

No comments yet


Leave a comment