CVE-2016-6138: Path Traversal
Published Aug 5, 2016
·Updated
Directory traversal vulnerability in SAP TREX 7.10 Revision 63 allows remote attackers to read arbitrary files via unspecified vectors, aka SAP Security Note 2203591.
Affected Software
1 affected component
SAP TREX=7.10-revision_63
Event History
Aug 5, 2016
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-6138?
CVE-2016-6138 is classified as a medium severity vulnerability due to its potential impact on sensitive file exposure.
2
How do I fix CVE-2016-6138?
To remediate CVE-2016-6138, users should upgrade to SAP TREX 7.10 Revision 64 or later as recommended in SAP Security Note 2203591.
3
What types of attacks can exploit CVE-2016-6138?
CVE-2016-6138 could be exploited through directory traversal attacks allowing unauthorized access to arbitrary files.
4
Which versions of SAP TREX are affected by CVE-2016-6138?
CVE-2016-6138 affects SAP TREX version 7.10 Revision 63.
5
What is the consequence of not addressing CVE-2016-6138?
Failure to address CVE-2016-6138 could lead to unauthorized file reading, potentially exposing sensitive data.