SAP Print Service (SAPSprint) performs insufficient validation of path information provided by users. An unauthenticated attacker could traverse to the parent directory and over-write system files causing high impact on confidentiality integrity and availability of the application.
https://www.securityweek.com/sap-patches-critical-vulnerabilities-in-netweaver-print-service-srm/