Description
The Internet Communication Framework (ICF) runtime rejects the access to a stateful HTTP session with the HTTP status message “400 Session not found” (see Note 1301591).
Available fix and Supported packages
- KRNL32NUC | 6.40 | 6.40EX2
- KRNL32NUC | 7.00 | 7.00
- KRNL32UC | 6.40 | 6.40EX2
- KRNL32UC | 7.00 | 7.00
- KRNL64NUC | 6.40 | 6.40EX2
- KRNL64NUC | 7.00 | 7.00
- KRNL64UC | 6.40 | 6.40EX2
- KRNL64UC | 7.00 | 7.00
- SAP_BASIS | 620 | 640
- SAP_BASIS | 700 | 702
- SAP_BASIS | 710 | 720
- KERNEL | 6.40 | 6.40
- KERNEL | 7.00 | 7.00
- SAP_BASIS 720 | SAPKB72003 |
- SAP_BASIS 702 | SAPKB70203 |
- SAP_BASIS 702 | SAPKB70204 |
- SAP_BASIS 640 | SAPKB64027 |
- SAP_BASIS 700 | SAPKB70023 |
- SAP_BASIS 701 | SAPKB70108 |
- SAP_BASIS 620 | SAPKB62070 |
- SAP_BASIS 710 | SAPKB71012 |
- SAP_BASIS 711 | SAPKB71107 |
- SAP_BASIS 640 | SAPKB64028 |
- SAP_BASIS 701 | SAPKB70109 |
- SAP_BASIS 702 | SAPKB70208 |
- SAP_BASIS 700 | SAPKB70025 |
- SAP_BASIS 710 | SAPKB71013 |
- SAP KERNEL 6.40 32-BIT | SP350 | 000350
- SAP KERNEL 6.40 32-BIT UNICODE | SP350 | 000350
- SAP KERNEL 6.40 64-BIT | SP350 | 000350
- SAP KERNEL 6.40 64-BIT UNICODE | SP350 | 000350
- SAP KERNEL 6.40_EX2 32-BIT | SP350 | 000350
- SAP KERNEL 6.40_EX2 32-BIT UC | SP350 | 000350
- SAP KERNEL 6.40_EX2 64-BIT | SP350 | 000350
- SAP KERNEL 6.40_EX2 64-BIT UC | SP350 | 000350
- SAP KERNEL 7.00 32-BIT | SP275 | 000275
- SAP KERNEL 7.00 32-BIT UNICODE | SP275 | 000275
- SAP KERNEL 7.00 64-BIT | SP275 | 000275
- SAP KERNEL 7.00 64-BIT UNICODE | SP275 | 000275
Affected component
- BC-MID-ICF
Internet Communication Framework
CVSS
Score: 0
PoC
Detailed vulnerability information added to RedRays Security Platform. Contact [email protected] for details.
URL
https://launchpad.support.sap.com/#/notes/1420203