SAP Knowledge Base Article - Preview

3332318 - Document Pipeline - Log4j Vulnerability in SAP Archiving and Document Access by OpenText

Symptom

The Log4j third-party component used by Document Pipeline to keep a record of activity within the application is affected by the Critical RCE Vulnerability: log4j - CVE-2021-44228.This issue occurs in (but may not be limited to):

  • Document Pipeline Versions 21.2 and later

There is no impact on versions prior to 21.2.
A threat actor could potentially exploit this vulnerability to remotely execute unauthorized code on systems running Document Pipeline.


Read more...

Environment

  • Document Pipeline 16
  • Document Pipeline 21.2
  • Document Pipeline 10.5.0
  • Document Pipeline 20.2
  • Document Pipeline 16.0
  • Document Pipeline 16.2

Product

SAP Archiving and Document Access by OpenText all versions

Keywords

KBA , XX-PART-OPT-ARC , SAP Archiving by OpenText , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.