SAP security note 1503579, "Authentication Bypass Vulnerability in NetWeaver PI". Below are the symptom, SAP recommended solution and the affected software components.
Description
Symptom
A critical authentication bypass vulnerability has been identified in NetWeaver Process Integration (PI). This vulnerability affects certain Java-based administration pages used in the NetWeaver PI Directory Administration. Exploitation of this vulnerability can lead to:
- Escalation of Privileges
- Remote File Overwrite
- Denial of Service (DoS) Attacks
- User Locking
- SMB Relay Attacks
Solution
To mitigate this vulnerability, it's essential to apply the provided patch ensuring that all HTTP requests undergo proper authentication checks.
CVSS
Score 9.0 Vector: AV:N/AC:L/Au:N/C:P/I:C/A:P
References
- SAP Note 1889488 – Briefing at Black Hat conference on July 31st, 2013
- SAP Note 1616259 – Briefing at Black Hat conference on August 4th, 2011
- SAP Note 1570083 – SAP EHP1 FOR SAP NETWEAVER PI 7.1 SP07
Affected components
SAP_BASIS 720 and SAP_BASIS 731 are not affected.
- SAP_BASIS 640
- SAP_BASIS 700
- SAP_BASIS 701
- SAP_BASIS 702
- SAP_BASIS 710
- SAP_BASIS 711
- SAP_BASIS 730
Full note on SAP: SAP Support Launchpad note 1503579
Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].




