Get a Pentest and security assessment of your IT network.

News

SAP Security Patch Day December 2020: Serious Vulnerability in SAP NetWeaver AS JAVA Requires Immediate Patching

The SAP Security Year ends with a relatively small number of new and updated SAP Security Notes. With only 14 notes, it is far below this years average of 20. Almost 50% of the issues are rated as HotNews or High Priority notes. SAP NetWeaver AS JAVA vulnerabilities allow an unauthenticated attacker to perform different privileged actions, such as changing database connection parameters or performing a Denial-of-Service attack. SAP Security Note #2974774, tagged with a CVSS score of 10, patches the aforementioned vulnerabilities. SAP is explicitly referring to its 24 months rule, stating that security patches will only be provided for support packages not older than 24 months.”]

Source: https://onapsis.com/blog/sap-security-notes-december-2020

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Take note, next week update Adobe Reader and Acrobat to fix critical flaws

News

Linux bug leaves 1.4 billion Android users vulnerable to hijacking attacks