SAP Knowledge Base Article - Preview

3678124 - Following workaround from SAP Note: 3610892 - [CVE-2025-42966] Insecure Deserialization vulnerability in SAP NetWeaver (XML Data Archiving)

Symptom

Following workaround as per SAP Note: 3610892 - [CVE-2025-42966] Insecure Deserialization vulnerability in SAP NetWeaver (XML Data Archiving Service) which suggest to add Start Up filter for application sap.com/tc~TechSrv~XML_DAS to disable it.

But when navigate to NWA->Operations -> Systems -> Start & Stop -> Click on the Java Applications tab and search with tc~TechSrv~XML_DAS, two application appears:

  1. tc~TechSrv~XML_DAS
  2. tc~TechSrv~XML_DAS_Local

and not sure whether to also disable the application tc~TechSrv~XML_DAS_Local or not as the above note mentions about tc~TechSrv~XML_DAS only.


Read more...

Environment

SAP Process Integration 7.5/SAP Process Orchestration 7.5

Product

SAP NetWeaver all versions

Keywords

tc~TechSrv~XML_DAS, tc~TechSrv~XML_DAS_Local, sap.com/tc~TechSrv~XML_DAS, sap.com/tc~TechSrv~XML_DAS_Local, CVE-2025-42966 , KBA , BC-ILM-DAS , XML Data Archiving Service , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.