Symptom
- During the login process, the username and password are transmitted from the client to the server without encryption, resulting in plaintext transmission.
- This issue occurs during the SAP BPC web login process.
Read more...
Environment
- SAP Business Planning and Consolidation, version for SAP BW/4HANA
- SAP Business Planning and Consolidation, version for SAP NetWeaver
Product
SAP Business Planning and Consolidation 10.1, version for SAP NetWeaver ; SAP Business Planning and Consolidation 11.0, version for SAP BW/4HANA ; SAP Business Planning and Consolidation 11.1, version for SAP BW/4HANA ; SAP Business Planning and Consolidation 2021, version for SAP BW/4HANA
Keywords
security vulnerability, plain text passwords, login vulnerabilities, bpc web, security testing, encryption, sap/epm/bpc/web/index.html, password transmission, security risks, login interface, HTTPS encryption, developer tools, browser security, server certificate, data protection, secure login, encrypted transmission, web application security , KBA , EPM-BPC-BW4 , BPC/4 , EPM-BPC-NW , NetWeaver Version , Problem
About this page
This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.
SAP Knowledge Base Article - Preview