SAP Knowledge Base Article - Preview

3619959 - Workaround of Note 3610591 - [CVE-2025-42977] Directory Traversal vulnerability in SAP NetWeaver Visual Composer

Symptom

You are seeking for more details in regards to Workaround of Note 3610591 :
For versions that do not have an available patch, a temporary workaround is to un-deploy the VisualComposerServerEar05.ear, which is part of the VCBASE.SCA component.


Read more...

Environment

  • SAP Enterprise Portal 7.5
  • SAP NetWeaver Application Server Java 7.5

Product

SAP Enterprise Portal all versions ; SAP NetWeaver Application Server for Java all versions

Keywords

Visual Composer, CVE, Vulnerability, directory traversal, VC, VCBASE, undeploy, undeployment, workaround, 3610591, dependency , KBA , EP-VC-INF , Visual Composer Infrastructure , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.