SAP Knowledge Base Article - Preview

3630555 - FAQ - SAPCAR Vulnerabilities in SAP Notes 3595143, 3595156, 3595141

Symptom

  1. Is it needed to apply the patches listed in the "Support Packages & Patches" section from the SAP Security Notes (3595143, 3595156, 3595141), when older SAPCAR version is used like 721_REL or 722_REL?
  2. How can I check the version of the used SAPCAR?
  3. Should I update the complete SAP Kernel or it is enough to patch only the SAPCAR executable?  


Read more...

Environment

  • SAPCAR 7.53
  • SAPCAR 7.22EXT

Product

SAP ERP all versions ; SAP NetWeaver Application Server for ABAP all versions ; SAP NetWeaver Application Server for Java all versions ; SAP NetWeaver Application Server for SAP S/4HANA all versions ; SAP NetWeaver all versions ; SAP S/4HANA all versions ; SAP S/4HANA foundation on SAP NetWeaver Application Server for ABAP, version for SAP HANA all versions

Keywords

SAPCAR, vulnerability, Memory corruption vulnerability, Directory traversal, Multiple Privilege Escalation, 3595143, 3595156, 3595141 , KBA , BC-INS-TLS , Sapcpe and Sapcar Tools , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.