SAP Security Note
Medium priority
SAP security note 1433737, "Security Note: Missing HTTPS support for BPEMUWLConnector", is a modification note released on 09.03.2010. Below are the symptom and SAP recommended solution.
Description
Symptom
BPM tasks are not shown in Universal Worklist and there is an error in the Connection Status window next to BPEMUWLConnector saying "Unable to connect…". This happens in case you have configured communication over HTTPS while configuring the Provider system for BPEMUWLConnector.
Solution
To correct this problem, apply the patch matching your support package version as listed in the patch table below as per the instructions in the NetWeaver Support Package Stack Guide.
Reason and prerequisites
You have configured BPEMUWLConnector in a federated landscape (Universal Worklist and Provider are on different systems) and set up HTTPS as communication protocol. Note that the communication protocol is specified in the property of the Provider system in the Portal System Landscape Directory.
CVSS
Score 0
References
Full note on SAP: SAP Support Launchpad note 1433737
Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].



