cve entity

CVE-2016-3976

1 source-linked records in the current knowledge graph.

high

CVE-2016-3976: SAP NetWeaver Directory Traversal Vulnerability

SAP NetWeaver Application Server Java Platforms contains a directory traversal vulnerability via a ..\ (dot dot backslash) in the fileName parameter to CrashFileDownloadServlet. This allows remote attackers to read files. Required action: Apply updates per vendor instructions.

CVE-2016-3976EPSS 46.6%NetWeaverSAP
CISA KEV ↗ · unattributed attribution