SAP security note 1477027, "RMA Authorization Check in BW Check Report", is a note released on December 14, 2010. Below are the symptom and the SAP recommended solution.
Description
Symptom
A transaction that is not assigned to any role exists in the RMA business content.
Solution
The error is resolved by applying the following support packages:
- BI_CONT 704 Support Package 08
- BI_CONT 705 Support Package 02
For advanced correction, follow these steps:
- Apply Support Packages: download and install the necessary support packages from SAPK-70408INBICONT and SAPK-70502INBICONT.
- Manual Correction Instructions: after implementing the correction instructions, manually add the transaction code for the "BW RMA Configuration and Check Reports" to the RMA administrator role (SAP_BW_RMA_ADMIN). Start the role maintenance using transaction PFCG, navigate to the Menu tab, choose Transaction and add transaction WRMA_CONFIG_CHECK to the role, switch to the Authorizations tab and select Change Authorization Data (the system automatically assigns the new transaction to authorization object S_TCODE), then save and generate the role.
Reason and prerequisites
This issue is due to a program error.
Full note on SAP: SAP Support Launchpad note 1477027
Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].



