SAP Knowledge Base Article - Preview

2916376 - SMP offers some callable resources which aren't used for communication and they are available

Symptom

Customers need to disable the pages below in SMP.

https://<domain>/public

https://<domain>/ws

Reason is, for example, pages are often published in an application which are not referenced in the normal workflow. For example, Backup files, standard web server pages or administrative interfaces. The publish of these pages are often unintentional and may result in information about the system that could be used by a potential attacker for further attacks.


Read more...

Environment

  • SMP 3.0 SP17 PL03
  • SMP 3.1 SP01

Product

SAP Mobile Platform 3.0 ; SAP Mobile Platform 3.1

Keywords

SMP, public, ws, pages, resource, unintentional, communication, attack, safe , KBA , MOB-ONP , SAP Mobile Platform on Premise , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.