Skip links
Arpine Maghakyan

Arpine Maghakyan

Security Researcher of RedRays.

Update 1 to security note 1661157, SAP security note 1769046

Description

Security note 1661157 has been rereleased with updated corrections.
After the implementation of SAP Note 1661157 the activation of the program SAPLSPML_CLIENT fails. There is a SYNTAX_ERROR in the include LSPML_CLIENT$02: Line 000014 – Type ‘HTTP_INVALID_TIMEOUT’ is unknown.

Basis releases 7.02 and newer

Available fix and Supported packages

  • SAP_BASIS | 702 | 702
  • SAP_BASIS | 720 | 730
  • SAP_BASIS | 731 | 731

Affected component

    BC-SEC-USR-ADM
    Users and Authorization administration

CVSS

Score: 0

Exploit

Detailed vulnerability information added to RedRays Security Platform. Contact [email protected] for details.

URL

https://launchpad.support.sap.com/#/notes/1769046

TAGS

#HTTP_INVALID_TIMEOUT
#SAPLSPML_CLIENT
#LSPML_CLIENT$02
#RSECNOTE
#SYNTAX_ERROR
#update
#update-note

More to explorer

SAP Cloud Connector Certificate Validation Issue

Date of Release: February 13, 2024 Advisory ID: CVE-2024-25642 Affected Software: SAP Cloud Connector Versions Affected: 2.15.0 to 2.16.1 Vulnerability Summary:A critical vulnerability,