CVE-2016-5845
MEDIUMSAP SAPCAR - Denial of Service via Invalid File Name in Archive
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2016-5845. PoCs published by Core Security.
AI-analyzed exploit summary The document describes two vulnerabilities in SAPCAR (CVE-2016-5845 and CVE-2016-5847), including a denial-of-service via invalid filenames and a TOCTOU race condition leading to privilege escalation. Proof-of-concept archive files are provided to demonstrate the issues.
Description
SAP SAPCAR does not check the return value of file operations when extracting files, which allows remote attackers to cause a denial of service (program crash) via an invalid file name in an archive file, aka SAP Security Note 2312905.
Exploits (1)
The document describes two vulnerabilities in SAPCAR (CVE-2016-5845 and CVE-2016-5847), including a denial-of-service via invalid filenames and a TOCTOU race condition leading to privilege escalation. Proof-of-concept archive files are provided to demonstrate the issues.
References (7)
Scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H