SAP Knowledge Base Article - Preview

3341958 - After executing xs delete-app-instances --stopped --crashed security scan still finds vulnerability

Symptom

After following KBA 3265493 - The fix to vulnerability Apache Commons Text Code Execution CVE-2022-42889 and executing command xs delete-app-instances --stopped --crashed, the security scan still finds vulnerability issue in some directories under /executionagent/executionroot/ folder AND the relevant droplet cannot be found in the list of command XSA du


Read more...

Environment

SAP HANA extended application services, advanced model (XSA)

Product

SAP HANA, platform edition all versions

Keywords

XSA, vulnerability, droplet, patch, XSA du, executionroot, xs delete-app-instances --stopped --crashed , KBA , BC-XS-RT , XS Advanced Runtime / XS Controller , HAN-CPT-CPT2 , SAP HANA Cockpit version 2 - based on XSA , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.