SAP Web Application Server Internet Communication Manager DoS Vulnerability
Description
A vulnerability has been identified in SAP Web Application Server, which could be exploited by remote attackers to cause a denial of service. This issue is caused by an error in the Internet Communication Manager (ICMAN.exe) component when processing an overly long URI (more than 263 bytes), which could be exploited by remote attackers to crash an affected service, creating a denial of service conedition.
Vulnerable Products
Vulnerable Software: SAP Web Application Server versions 6.xSAP Web Application Server versions 7.x
Solution
Upgrade to the latest version :ftp://ftp.sap.com/pub