SAP Knowledge Base Article - Preview

2547020 - Usage of Function Module CALL_BROWSER in wrong way

Symptom

Since code correction of SAP security Notes: "2278931 - Update 1 to 1906212: Code injection vulnerability in Knowledge Provider" and "2525392 -  [CVE-2018-2363] Update 2 to 1906212: Code injection vulnerability in Knowledge Provider", the function module CALL_BROWSER is limited for URL's starting with prefix "http" or "www".

The following error message appears:

  S#381 "Exception UNSPECIFIED_ERROR triggered in module CALL_BROWSER".


Read more...

Environment

SAP NetWeaver

Product

SAP NetWeaver all versions

Keywords

UNSPECIFIED_ERROR, CALL_BROWSER, message S#381, unable to open file path, favourite, Web Address, File Path, role menu, PFCG, SAP Easy Access menu. , KBA , BC-SRV-KPR-DMS , Document Management Services , BC-SEC-AUT-PFC , ABAP Authorization and Role Administration , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.