SAP Print Service Directory Traversal Vulnerability Allowing System File Overwrite

Vulnerability

A vulnerability in SAP Print Service (SAPSprint) exists due to inadequate validation of user-provided path information. This flaw allows an unauthenticated attacker to perform directory traversal, access parent directories, and overwrite system files. Such actions could severely disrupt the application's confidentiality, integrity, and availability.

Impact

Exploitation of this vulnerability could lead to unauthorized access and modification of system files, causing significant disruption to the application's functionality and security.

Remediation

Users are advised to consult the SAP Security Notes for guidance on addressing this vulnerability. SAP Security Notes can be accessed through the SAP for Me platform, specifically on the SAP Security Patch Day.

Added: Oct 14, 2025, 1:18 AM
Updated: Oct 14, 2025, 1:18 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
7.4
remediation
0.0
relevance
0.7
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.