cancel
Showing results for 
Search instead for 
Did you mean: 

SAP Data Services generated ABAP code giving VFORGE (code inspector) issues on vulnerabilities

iman_roy
Discoverer
0 Kudos

Dear Experts,

We need your urgent assistance in order to get the issue solved with the ABAP code inspector tool VFORGE coming up with high security issues on the BODS generated ABAP codes as shown below.

For an ECC table T052, in development environment BODS Abap data flow was prepared and the program Z_BODS_T052 was generated successfully on the ECC side.

Data Transfer method selected in the datastore configuration: RFC

Table: T052

Extraction type: Full (no transformation)

Now as part of the customer standard process, every ABAP report needs to be evaluated by the ABAP code inspector tool VFORGE for any vulnerability in the code.

And in this case even if the ABAP is generated from the BODS side still in the code (which should be a SAP standard one) we are getting the above listed vulnerabilities/issues.

As a result of which the customer change control team is asking us to re-mediate the code in order to proceed further for deployment in QA/PROD.

Hence can you please suggest/advice whether any SAP note is available on this with the recommendation so that we can showcase it to customer and ask for exception approval.

Thanks,

Iman Roy

Accepted Solutions (0)

Answers (0)