Search This Blog

Monday, April 11, 2011

SAP Note 1342183 - Security information: Transaction FIAAHELP

Symptom

Transaction FIAAHELP and the function module AA_CUS_EDIT_CONTENT can be used to change existing source code without an authorization check, among other things.


Other terms
Security, AA_CUS_EDIT_CONTENT


Reason and Prerequisites
There is a program error.


Solution
Implement the corrections as described in the attached correction instructions. The changes are also delivered with the following Support Packages:

Component  Release  Support Package
SAP_APPL   470     SAPKH47031
SAP_APPL   500     SAPKH50020
SAP_APPL   600     SAPKH60014
SAP_APPL   602     SAPKH60204
SAP_APPL   603     SAPKH60303

The corrections do not affect the normal function of the application.
We strongly recommend that you implement this note to eliminate the security issue.




Affected Releases
Software
Component
Release
From
Release
To
Release
And
subsequent
SAP_APPL
470
470
470
 
SAP_APPL
500
500
500
 
SAP_APPL
600
600
600
 
SAP_APPL
602
602
602
 
SAP_APPL
603
603
603
 


Visit https://service.sap.com/sap/support/notes/1342183 for Corrections Instructions

No comments:

Post a Comment