The SAP Web Application Server suffers from denial of service, remote file disclosure, and local privilege escalation vulnerabilities.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/51651/SAP-multiple.txt
Source: https://packetstormsecurity.com/files/51651/SAP-multiple.txt.html

