SAP NetWeaver Application Server (AS) Java is an application server running in NetWeaver and based on the Java programming language. There is an authorization issue vulnerability in SAP NetWeaver AS JAVA (LM Configuration Wizard), which is caused by the program’s failure to perform authentication checks.
Attackers can use this vulnerability to perform configuration tasks and perform important operations on the SAP Java system, including creating administrative users, affecting the confidentiality, integrity, and availability of the system.
versions 7.30, 7.31, 7.40, 7.50.
We recommend you to review SAP Security Note (https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=552599675) for more information and apply critical patches as soon as possible.