SAP Knowledge Base Article - Preview

3703229 - Plaintext transmission of passwords during the SAP BPC web login

Symptom

  • During the login process, the username and password are transmitted from the client to the server without encryption, resulting in plaintext transmission.
  • This issue occurs during the SAP BPC web login process. 


Read more...

Environment

  • SAP Business Planning and Consolidation, version for SAP BW/4HANA
  • SAP Business Planning and Consolidation, version for SAP NetWeaver

Product

SAP Business Planning and Consolidation 10.1, version for SAP NetWeaver ; SAP Business Planning and Consolidation 11.0, version for SAP BW/4HANA ; SAP Business Planning and Consolidation 11.1, version for SAP BW/4HANA ; SAP Business Planning and Consolidation 2021, version for SAP BW/4HANA

Keywords

security vulnerability, plain text passwords, login vulnerabilities, bpc web, security testing, encryption, sap/epm/bpc/web/index.html, password transmission, security risks, login interface, HTTPS encryption, developer tools, browser security, server certificate, data protection, secure login, encrypted transmission, web application security , KBA , EPM-BPC-BW4 , BPC/4 , EPM-BPC-NW , NetWeaver Version , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.