• ALERT: Using Microsoft SQL Server secure connections with Sage X3

    Microsoft SQL Server “Forced encryption” flag is not supported for Sage X3. Microsoft SQL Server secure connections can be set up through the Sage X3 Management Console from Sage X3 2023 R2. The Console documentation details how to secure Microsoft…
  • ALERT: Sage X3 Automated Test Platform 3.0.0.1 Security update

    The password to install or update Sage X3 Automated Test Platform has been modified for security reasons. For new installations use the credentials provided in the atp-3.0.0.1-win.zip file. For all existing users whatever the version of Sage X3 Automated…
  • INFO: Release notes for VT Web server 2.41.0 report included log4j version incorrectly

    It has come to our attention that Version 12 Patch 32 Component readme for VT Web server ( https://online-help.sageerpx3.com/erp/12/wp-static-content/news/en_US/ReleaseNote/Readme-Components-ENG-12.0.32.txt ) reports the included log4j version incorrectly…
  • ALERT : Vulnerability in Spring Framework (Spring MVC or Spring WebFlux or Spring4Shell)

    A Security Alert, CVE-2022-22695 , has been raised for the Spring Framework which encompasses Spring MVC or Spring WebFlux. Another article from Kaspersky, Spring4Shell , mentions the Spring4Shell critical vulnerability as well. The description of…
  • ALERT : Log4J Vulnerability (CVE-2021-44228)

    The ONLY impacted component in Sage X3 is Elasticsearch. Sage X3 V11 and V12 use Elasticsearch 7.9 and above, which is part of the Elasticsearch versions impacted by this issue. Sage X3 Version 9 or earlier are not impacted. On installations where…
  • ALERT: "Security Best Practices" online help has been updated

    Whilst I'm sure you all regularly review the online help, I would like to bring to your attention that the Security Best Practises has been updated (27th April 2021) and so should be re-reviewed and carefully read to ensure you confirm to the latest recomendations…