{"id":4624,"date":"2022-11-21T08:00:31","date_gmt":"2022-11-21T07:00:31","guid":{"rendered":"http:\/\/192.168.20.3\/?p=4624"},"modified":"2024-12-10T12:15:49","modified_gmt":"2024-12-10T11:15:49","slug":"sap-security-patch-day-noviembre","status":"publish","type":"post","link":"https:\/\/orekait.com\/es\/sap-security-patch-day-noviembre\/","title":{"rendered":"SAP Security Patch Day<br> <span class=\"font-300\">Noviembre 2022<\/span>"},"content":{"rendered":"<p>[et_pb_section fb_built=&#8221;1&#8243; admin_label=&#8221;section&#8221; _builder_version=&#8221;4.16&#8243; global_colors_info=&#8221;{}&#8221;][et_pb_row admin_label=&#8221;Imagen principal&#8221; _builder_version=&#8221;4.16&#8243; background_size=&#8221;initial&#8221; background_position=&#8221;top_left&#8221; background_repeat=&#8221;repeat&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.16&#8243; custom_padding=&#8221;|||&#8221; global_colors_info=&#8221;{}&#8221; custom_padding__hover=&#8221;|||&#8221;][et_pb_image src=&#8221;https:\/\/orekait.com\/wp-content\/uploads\/2022\/11\/patch-noviembre.png&#8221; alt=&#8221;cloud-public&#8221; title_text=&#8221;patch-noviembre&#8221; admin_label=&#8221;Imagen principal&#8221; module_class=&#8221;post-img&#8221; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][\/et_pb_image][\/et_pb_column][\/et_pb_row][et_pb_row admin_label=&#8221;Cuerpo&#8221; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_text admin_label=&#8221;Texto&#8221; _builder_version=&#8221;4.25.2&#8243; header_2_font_size=&#8221;24px&#8221; header_3_font_size=&#8221;20px&#8221; background_size=&#8221;initial&#8221; background_position=&#8221;top_left&#8221; background_repeat=&#8221;repeat&#8221; global_colors_info=&#8221;{}&#8221;]<\/p>\n<p>Nuevamente traemos el an\u00e1lisis mensual de las notas de seguridad publicadas por SAP en el security patch day. Desde Oreka IT seguimos considerando importante continuar con la divulgaci\u00f3n de estas actualizaciones ya que es la mejor forma de explicar la criticidad de mantener actualizadas las aplicaciones corporativas.<\/p>\n<p>En cuanto al an\u00e1lisis cuantitativo, en esta nueva publicaci\u00f3n del security patch day SAP ha publicado 12 notas, de las cuales 6 son de importancia\u00a0<em>high<\/em>, y 3 de ellas han sido clasificadas como\u00a0<em>hot news<\/em>.<\/p>\n<p>Estas vulnerabilidades nos recuerdan la importancia de mantener nuestras aplicaciones corporativas actualizadas.<\/p>\n<p><strong>A continuaci\u00f3n, analizaremos estas 6 notas:<\/strong><\/p>\n<p><strong>3243924 \u2013 Insecure Deserialization of Untrusted Data in SAP BusinessObjects Business Intelligence Platform<\/strong><\/p>\n<p>En algunos workflows de SAP BusinessObjects BI Platform un atacante autenticado con privilegios bajos puede interceptar un objeto serializado en los par\u00e1metros y sustituirlo por uno serializado malicioso, lo que lleva a la deserializaci\u00f3n de datos que no son de confianza. Pudiendo comprometer la Confidencialidad, Integridad y Disponibilidad del sistema.<\/p>\n<p>Para resolver esta vulnerabilidad SAP a liberado un nuevo SP que se encuentra en la propia nota 3243924 en el apartado Support Package Patches, adem\u00e1s SAP documenta un workaround que nos permite mitigar esta vulnerabilidad.<\/p>\n<p><strong>3249990 \u2013 Multiple Vulnerabilities in SQlite bundled with SAPUI5<\/strong><\/p>\n<p>El framework SAPUI5 usa SQLite &lt; 3.39.2, que en ocasiones permite el desbordamiento de los l\u00edmites del array. Esto podr\u00eda ser explotado por un usuario a trav\u00e9s de la red, lo que tiene un impacto considerable en la disponibilidad de las aplicaciones que usan SAPUI5.<\/p>\n<p>Esta vulnerabilidad ha sido resuelta en las versiones de SAP UI5:<\/p>\n<ul>\n<li>1.71.51<\/li>\n<li>1.84.29<\/li>\n<li>1.96.14<\/li>\n<li>1.102.8<\/li>\n<li>1.105.2<\/li>\n<\/ul>\n<p><strong>3239152 \u2013 Account hijacking through URL Redirection vulnerability in SAP Commerce login form<\/strong><\/p>\n<p>Vulnerabilidad por la que un atacante puede cambiar el contenido de una p\u00e1gina de inicio de sesi\u00f3n de SAP Commerce a trav\u00e9s de una URL manipulada. Pudiendo inyectar un c\u00f3digo que les permita redirigir los env\u00edos desde el formulario de inicio de sesi\u00f3n afectado a su propio servidor. Esto les permitir\u00eda robar credenciales y secuestrar cuentas. Un ataque exitoso podr\u00eda comprometer la confidencialidad, integridad y disponibilidad del sistema.<\/p>\n<p><strong>3256571 \u2013 Multiple vulnerabilities in SAP NetWeaver Application Server ABAP and ABAP Platform<\/strong><\/p>\n<p>Debido a una validaci\u00f3n de entrada insuficiente, SAP NetWeaver Application Server ABAP permite que un atacante con privilegios altos use una funci\u00f3n remota para eliminar un archivo que de otro modo estar\u00eda restringido. En caso de explotar esta vulnerabilidad, un atacante puede comprometer completamente la integridad y disponibilidad de la aplicaci\u00f3n.<\/p>\n<p>SAP ha publicado la nota 3256571 que al implementarla nos permite resolver esta vulnerabilidad, as\u00ed como un nuevo SP de SAP_BASIS donde se incluye esta correcci\u00f3n.<\/p>\n<p><strong>3226411 \u2013 Privilege escalation vulnerability in SAP SuccessFactors attachment API for Mobile Application<\/strong><\/p>\n<p>Debido a errores de configuraci\u00f3n, las APIs de archivos adjuntos de SAP SuccessFactors permiten que un atacante con privilegios de usuario realice actividades con privilegios de administrador en la red. Estas APIs se utilizaron en la aplicaci\u00f3n SF Mobile. En caso de conseguir explotar esta vulnerabilidad, el atacante puede leer\/escribir archivos adjuntos. Comprometiendo as\u00ed la confidencialidad e integridad de la aplicaci\u00f3n.<\/p>\n<p>Para resolver esta vulnerabilidad SAP a liberado una nueva versi\u00f3n de la aplicaci\u00f3n para IOS y Android. Adem\u00e1s, detallan los pasos a seguir para mitigar la vulnerabilidad de manera inmediata.<\/p>\n<p><strong>3263436 \u2013 Arbitrary Code Execution vulnerability in SAP 3D Visual Enterprise Author and SAP 3D Visual Enterprise Viewer<\/strong><\/p>\n<p>La nota 3263436 trata una vulnerabildad descubierta en las aplicaciones SAP 3D Visual Enterprise Author y SAP 3D Visual Enterprise Viewer, por la que, debido a un error en la gesti\u00f3n de memoria cuando la v\u00edctima abre un fichero no confiable se podr\u00eda ejecutar c\u00f3digo malicioso, con diferentes consecuencias, pudiendo obtener privilegios en el equipo o acceso a datos de la memoria.<\/p>\n<p>Para resolverlo SAP a publicado nuevas versiones de la aplicaci\u00f3n, que previenen esta vulnerabilidad.<\/p>\n<p><strong>En el siguiente cuadro, todas las notas liberadas este mes para comprobar si aplican o no en vuestros sistemas:<\/strong><\/p>\n<figure class=\"wp-block-table is-style-stripes\">\n<table>\n<tbody>\n<tr>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>Note<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>CVE<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>Title<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>Component<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>Priority<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>CVSS<\/strong><\/td>\n<\/tr>\n<tr>\n<td class=\"has-text-align-center\" data-align=\"center\">3243924<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">[CVE-2022-41203]<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">Insecure Deserialization of Untrusted Data in SAP BusinessObjects Business Intelligence Platform (Central Management Console and BI Launchpad)<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">BI-RA-WBI-FE<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">HotNews<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">9,9<\/td>\n<\/tr>\n<tr>\n<td class=\"has-text-align-center\" data-align=\"center\">3249990<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">[CVE-2021-20223]<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">Multiple Vulnerabilities in SQlite bundled with SAPUI5<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">CA-UI5-VTK-VIT<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">HotNews<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">9,8<\/td>\n<\/tr>\n<tr>\n<td class=\"has-text-align-center\" data-align=\"center\">3239152<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">[CVE-2022-41204]<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">Account hijacking through URL Redirection vulnerability in SAP Commerce login form<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">CEC-COM-CPS<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">HotNews<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">9,6<\/td>\n<\/tr>\n<tr>\n<td class=\"has-text-align-center\" data-align=\"center\">3256571<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">[CVE-2022-41214]<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">Multiple vulnerabilities in SAP NetWeaver Application Server ABAP and ABAP Platform<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">BC-CTS-TMS<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">Correction with high priority<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">8,7<\/td>\n<\/tr>\n<tr>\n<td class=\"has-text-align-center\" data-align=\"center\">3226411<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">[CVE-2022-35291]<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">Privilege escalation vulnerability in SAP SuccessFactors attachment API for Mobile Application(Android &amp; iOS)<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">LOD-SF-EC<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">Correction with high priority<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">8,1<\/td>\n<\/tr>\n<tr>\n<td class=\"has-text-align-center\" data-align=\"center\">3263436<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">[CVE-2022-41211]<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">Arbitrary Code Execution vulnerability in SAP 3D Visual Enterprise Author and SAP 3D Visual Enterprise Viewer<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">CA-VE-VEA<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">Correction with high priority<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">7<\/td>\n<\/tr>\n<tr>\n<td class=\"has-text-align-center\" data-align=\"center\">3229987<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">[CVE-2022-41259]<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">Denial of service (DOS) in SAP SQL Anywhere<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">BC-SYB-SQA<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">Correction with medium priority<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">6,5<\/td>\n<\/tr>\n<tr>\n<td class=\"has-text-align-center\" data-align=\"center\">3260708<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">[CVE-2022-41258]<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">Multiple Cross-Site Scripting (XSS) vulnerabilities in SAP Financial Consolidation<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">EPM-BFC-TCL-ADM-SEC<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">Correction with medium priority<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">6,5<\/td>\n<\/tr>\n<tr>\n<td class=\"has-text-align-center\" data-align=\"center\">3218159<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">Insufficient Session Expiration in Central Fiori Launchpad<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">CA-FLP-FE-COR<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">Correction with medium priority<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">6,1<\/td>\n<\/tr>\n<tr>\n<td class=\"has-text-align-center\" data-align=\"center\">3238042<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">[CVE-2022-41207]<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">URL Redirection vulnerability in SAP Biller Direct<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">FIN-FSCM-BD<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">Correction with medium priority<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">6,1<\/td>\n<\/tr>\n<tr>\n<td class=\"has-text-align-center\" data-align=\"center\">3237251<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">[CVE-2022-41205]<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">Code injection vulnerability in SAP GUI for Windows<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">BC-FES-GUI<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">Correction with medium priority<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">5,5<\/td>\n<\/tr>\n<tr>\n<td class=\"has-text-align-center\" data-align=\"center\">3251202<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">[CVE-2022-41215]<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">URL Redirection vulnerability in SAP NetWeaver ABAP Server and ABAP Platform<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">BC-MID-ICF<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">Correction with medium priority<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">4,7<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<\/figure>\n<p>Este mes SAP ha liberado 12 notas de seguridad de las cuales 3 tienen una puntuaci\u00f3n CVSS por encima de 9.<\/p>\n<p><strong>El desglose de vulnerabilidades encontradas en los sistemas SAP ha sido el siguiente:<\/strong><\/p>\n<figure class=\"wp-block-table is-style-stripes\">\n<table>\n<tbody>\n<tr>\n<td>\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>Enero<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>Febrero<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>Marzo<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>Abril<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>Mayo<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>Junio<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>Julio<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>Agosto<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>Septiembre<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>Octubre<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>Noviembre<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>TOTAL<\/strong><\/td>\n<\/tr>\n<tr>\n<td>Clickjacking<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>3<\/strong><\/td>\n<\/tr>\n<tr>\n<td>Code Injection<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">2<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">3<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">2<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>9<\/strong><\/td>\n<\/tr>\n<tr>\n<td>Cross-Site Scripting<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">2<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">2<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">4<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">4<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">3<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">7<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">4<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">5<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>33<\/strong><\/td>\n<\/tr>\n<tr>\n<td>Denial of Service<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">2<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">4<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">2<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>10<\/strong><\/td>\n<\/tr>\n<tr>\n<td>Improper authentication<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>2<\/strong><\/td>\n<\/tr>\n<tr>\n<td>Improper input validation<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">2<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">2<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">5<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>12<\/strong><\/td>\n<\/tr>\n<tr>\n<td>Information Disclosure<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">4<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">2<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">4<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">6<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">4<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">7<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">4<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">2<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">6<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>41<\/strong><\/td>\n<\/tr>\n<tr>\n<td>Memory corruption<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">2<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>5<\/strong><\/td>\n<\/tr>\n<tr>\n<td>Missing Authorization Check<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">5<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">6<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">2<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>19<\/strong><\/td>\n<\/tr>\n<tr>\n<td>Missing input Validation<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">2<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>4<\/strong><\/td>\n<\/tr>\n<tr>\n<td>Missing XML Validation<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">3<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>3<\/strong><\/td>\n<\/tr>\n<tr>\n<td>Remote Code Execution<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">7<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">6<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">4<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">2<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>22<\/strong><\/td>\n<\/tr>\n<tr>\n<td>Server Side Request Forgery<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">2<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">2<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>4<\/strong><\/td>\n<\/tr>\n<tr>\n<td>SQL Injection<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>1<\/strong><\/td>\n<\/tr>\n<tr>\n<td>Otros<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">2<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">6<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">6<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">1<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">4<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">3<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\">3<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>27<\/strong><\/td>\n<\/tr>\n<tr>\n<td>\u00a0<\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>12<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>19<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>16<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>36<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>14<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>15<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>28<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>7<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>12<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>20<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>16<\/strong><\/td>\n<td class=\"has-text-align-center\" data-align=\"center\"><strong>112<\/strong><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<\/figure>\n<p><strong>La diferencia de notas liberadas y vulnerabilidades es debido a que una nota puede solucionar m\u00faltiples vulnerabilidades.<\/strong><\/p>\n<p><strong>Nos despedimos recomendando pasarse por el apartado de\u00a0<\/strong><strong>security notes<\/strong><strong>\u00a0del Launchpad de SAP y analizar las notas liberadas desde la \u00faltima actualizaci\u00f3n de nuestros sistemas e instalar las que apliquen a los sistemas de cada empresa.<\/strong><\/p>\n<p><strong>Fuentes:<\/strong><\/p>\n<p><a href=\"https:\/\/wiki.scn.sap.com\/\" target=\"_blank\" rel=\"noopener\">https:\/\/wiki.scn.sap.com\/<\/a><\/p>\n<p><a href=\"https:\/\/launchpad.support.sap.com\/#\/securitynotes\" target=\"_blank\" rel=\"noopener\">https:\/\/launchpad.support.sap.com\/#\/securitynotes<\/a><\/p>\n<p><a href=\"https:\/\/www.sap.com\/documents\/2022\/02\/fa865ea4-167e-0010-bca6-c68f7e60039b.html\" target=\"_blank\" rel=\"noopener\">https:\/\/www.sap.com\/documents\/2022\/02\/fa865ea4-167e-0010-bca6-c68f7e60039b.html<\/a><\/p>\n<p><a href=\"https:\/\/cve.mitre.org\/\" target=\"_blank\" rel=\"noopener\">https:\/\/cve.mitre.org\/<\/a><\/p>\n<p class=\"has-text-align-center\">Art\u00edculos anteriores de este mismo a\u00f1o 2022:<\/p>\n<p class=\"has-text-align-center\"><a href=\"https:\/\/orekait.com\/blog\/sap-security-patch-day-octubre-2\/\" target=\"_blank\" rel=\"noreferrer noopener\">OCTUBRE 2022<\/a>\u00a0\u2013\u00a0<a href=\"https:\/\/orekait.com\/blog\/sap-security-patch-day-junio\/\">JUNIO 2022<\/a>\u00a0\u2013\u00a0<a href=\"https:\/\/orekait.com\/blog\/sap-security-patch-day-mayo\/\" target=\"_blank\" rel=\"noreferrer noopener\">MAYO 2022<\/a>\u00a0\u2013\u00a0<a href=\"https:\/\/orekait.com\/blog\/sap-security-patch-day-abril\/\" target=\"_blank\" rel=\"noreferrer noopener\">ABRIL 2022<\/a>\u00a0\u2013\u00a0<a href=\"https:\/\/orekait.com\/blog\/sap-security-patch-day-marzo\/\" target=\"_blank\" rel=\"noreferrer noopener\">MARZO 2022<\/a><\/p>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][et_pb_row admin_label=&#8221;M\u00e1s informaci\u00f3n&#8221; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_text _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;]<\/p>\n<p class=\"morado\">M\u00e1s informaci\u00f3n:<\/p>\n<p>[\/et_pb_text][et_pb_button button_url=&#8221;https:\/\/orekait.com\/es\/area-administracion-sistemas&#8221; button_text=&#8221;M\u00e1s informaci\u00f3n&#8221; module_class=&#8221;entrada-btn&#8221; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; custom_button=&#8221;on&#8221; button_text_color=&#8221;#8156EA&#8221; button_bg_color=&#8221;RGBA(255,255,255,0)&#8221; button_border_color=&#8221;#8156EA&#8221; button_border_radius=&#8221;30px&#8221; button_font=&#8221;Plus Jakarta Sans|600|||||||&#8221; button_icon=&#8221;&#x24;||divi||400&#8243; button_icon_color=&#8221;#8156EA&#8221; button_on_hover=&#8221;off&#8221; hover_enabled=&#8221;0&#8243; global_colors_info=&#8221;{}&#8221; button_text_color__hover_enabled=&#8221;on|desktop&#8221; button_text_color__hover=&#8221;#8156EA&#8221; button_bg_color__hover_enabled=&#8221;on|hover&#8221; button_bg_color__hover=&#8221;#8156EA&#8221; button_bg_enable_color__hover=&#8221;on&#8221; button_icon_color__hover_enabled=&#8221;on|hover&#8221; button_icon_color__hover=&#8221;#ffffff&#8221; url_new_window=&#8221;on&#8221; sticky_enabled=&#8221;0&#8243;][\/et_pb_button][et_pb_divider show_divider=&#8221;off&#8221; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; custom_margin=&#8221;||40px||false|false&#8221; global_colors_info=&#8221;{}&#8221;][\/et_pb_divider][\/et_pb_column][\/et_pb_row][et_pb_row use_custom_gutter=&#8221;on&#8221; admin_label=&#8221;Noticias relacionadas titulo&#8221; module_id=&#8221;fondo-articulos&#8221; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; background_color=&#8221;#f7f7f7&#8243; width=&#8221;100%&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_divider show_divider=&#8221;off&#8221; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; background_color=&#8221;RGBA(255,255,255,0)&#8221; custom_margin=&#8221;||40px||false|false&#8221; global_colors_info=&#8221;{}&#8221;][\/et_pb_divider][et_pb_heading title=&#8221;Quizas te pueda interesar&#8221; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; title_level=&#8221;h2&#8243; title_text_align=&#8221;center&#8221; global_colors_info=&#8221;{}&#8221;][\/et_pb_heading][et_pb_divider show_divider=&#8221;off&#8221; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; custom_margin=&#8221;||30px||false|false&#8221; global_colors_info=&#8221;{}&#8221;][\/et_pb_divider][\/et_pb_column][\/et_pb_row][et_pb_row admin_label=&#8221;Noticias relacionadas&#8221; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; width=&#8221;100%&#8221; custom_margin=&#8221;-150px||||false|false&#8221; custom_margin_tablet=&#8221;0px||||false|false&#8221; custom_margin_phone=&#8221;0px||||false|false&#8221; custom_margin_last_edited=&#8221;on|desktop&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_blog fullwidth=&#8221;off&#8221; posts_number=&#8221;3&#8243; include_categories=&#8221;current&#8221; show_author=&#8221;off&#8221; show_date=&#8221;off&#8221; show_pagination=&#8221;off&#8221; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][\/et_pb_blog][\/et_pb_column][\/et_pb_row][\/et_pb_section][et_pb_section fb_built=&#8221;1&#8243; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_row _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_image src=&#8221;https:\/\/orekait.com\/wp-content\/uploads\/2023\/06\/desviaciones-de-produccion-400&#215;402-1.png&#8221; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][\/et_pb_image][\/et_pb_column][\/et_pb_row][\/et_pb_section][et_pb_section fb_built=&#8221;1&#8243; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_row _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_image src=&#8221;https:\/\/orekait.com\/wp-content\/uploads\/2023\/05\/sistemas-hosting.png&#8221; title_text=&#8221;sistemas-hosting&#8221; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][\/et_pb_image][\/et_pb_column][\/et_pb_row][\/et_pb_section]<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Nuevamente traemos el an\u00e1lisis mensual de las notas de seguridad publicadas por SAP en el security patch day. Desde Oreka IT seguimos considerando importante continuar con la divulgaci\u00f3n de estas actualizaciones ya que es la mejor forma de explicar la criticidad de mantener actualizadas las aplicaciones corporativas. En cuanto al an\u00e1lisis cuantitativo, en esta nueva [&hellip;]<\/p>\n","protected":false},"author":3,"featured_media":4524,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_et_pb_use_builder":"on","_et_pb_old_content":"Lorem ipsum dolor sit amet consectetur adipiscing elit congue montes, imperdiet taciti erat elementum fermentum sem ante ultrices ridiculus, sagittis sociis egestas quisque ac semper quis odio. Aenean hendrerit ac metus dis nascetur aliquet mollis integer, rutrum vel laoreet posuere proin sagittis luctus est, tempus duis nisl ultrices parturient tempor praesent. Dignissim curabitur nascetur pellentesque augue fringilla pulvinar eros, tempus fames vehicula maecenas cubilia id, rutrum euismod integer ut scelerisque mus.\r\n\r\nVivamus auctor odio aenean rhoncus natoque dictum purus, volutpat pellentesque laoreet ridiculus consequat nisi varius euismod, augue platea convallis curae magnis taciti. Imperdiet nibh curabitur quisque orci consequat aenean pellentesque, cubilia duis senectus felis sed posuere tortor, magnis enim diam a odio sociis. Enim tellus nisl nec molestie augue luctus tempor habitant, nunc dictumst phasellus volutpat sem facilisis taciti, habitasse laoreet at turpis vel fermentum vulputate.","_et_gb_content_width":"","footnotes":""},"categories":[48,50],"tags":[],"class_list":["post-4624","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-administracion-de-sistemas","category-sap-security-patch-day"],"_links":{"self":[{"href":"https:\/\/orekait.com\/es\/wp-json\/wp\/v2\/posts\/4624","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/orekait.com\/es\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/orekait.com\/es\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/orekait.com\/es\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/orekait.com\/es\/wp-json\/wp\/v2\/comments?post=4624"}],"version-history":[{"count":4,"href":"https:\/\/orekait.com\/es\/wp-json\/wp\/v2\/posts\/4624\/revisions"}],"predecessor-version":[{"id":21128,"href":"https:\/\/orekait.com\/es\/wp-json\/wp\/v2\/posts\/4624\/revisions\/21128"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/orekait.com\/es\/wp-json\/wp\/v2\/media\/4524"}],"wp:attachment":[{"href":"https:\/\/orekait.com\/es\/wp-json\/wp\/v2\/media?parent=4624"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/orekait.com\/es\/wp-json\/wp\/v2\/categories?post=4624"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/orekait.com\/es\/wp-json\/wp\/v2\/tags?post=4624"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}