Skip links
🔥🔥🔥 Join us for our upcoming training session at Black Hat MEA: "Securing SAP Systems: Expert Insights and Penetration Testing Techniques" 🛡️🔍

SSO integration via ITS using PAS, SAP security note 493107

Description

You can use the Pluggable Authentication Service (PAS) to achieve Single Sign-On (SSO) via the Internet Transaction Server (ITS).
PAS was developed in conjunction with workplace scenarios and is also described in composite SAP Note 366805.

Available fix and Supported packages

  • BC-FES-ITS | 46D C3 | 46D C4
  • BC-FES-ITS | 610 | 620
  • SAP_BASIS | 46D | 46D
  • SAP_BASIS | 610 | 620

Affected component

    BC-FES-ITS
    SAP Internet Transaction Server

CVSS

Score: 0

Exploit

Detailed vulnerability information added to RedRays Security Platform. Contact [email protected] for details.

URL

https://launchpad.support.sap.com/#/notes/493107

TAGS

#Pluggable-Authentication-Service-(PAS)
#Internet-Transaction-Server-(ITS)
#Single-Sign-On-(SSO)
#external-authentication
#TICKET
#SSO2
#COOKIE
#workplace
#HTTP
#header
#authentication

How to detect over 4100 vulnerabilities in SAP Systems?

More to explorer