SafeNet SAS OWA Agent Directory Traversal Vulnerability

Summary
Directory traversal vulnerability in SafeNet Authentication Service (SAS) Outlook Web Access Agent (formerly CRYPTOCard).
Impact
Successful exploitation will allow remote attackers to download arbitrary files. Impact Level: Application
Solution
Update to 1.03.30109 or higher
Insight
Via a .. (dot dot) in the GetFile parameter to owa/owa it is possible to read arbitrary files.
Affected
SafeNet Authentication Service before 1.03.30109
Detection
Send a crafted HTTP GET request and check whether it is able to read arbitrary files or not.
References