Home News Maximum severity vulnerability puts over 1200 SAP NetWeaver servers at risk of...

Maximum severity vulnerability puts over 1200 SAP NetWeaver servers at risk of hijacking

5
0




  • SAP disclosed a 10/10 flaw in NetWeaver Visual Composer
  • The bug allows threat actors to upload malware
  • Researchers claim up to 1,200 instances are vulnerable

More than 1,200 SAP instances are at risk of being hijacked, researchers are saying, as a critical vulnerability was found being abused in the wild. Earlier this week, SAP said it found an unauthenticated file upload vulnerability in NetWeaver Visual Composer’s Metadata Uploader component.

Visual Composer is a development tool that allows users to build web-based business applications without writing code. It’s mostly used to create dashboards, forms, and interactive reports. The Metadata Uploader, on the other hand, is a tool for importing external data models (metadata) into the Visual Composer design environment. This allows developers to connect to remote data sources (web services, databases, or SAP systems).



Source link

LEAVE A REPLY

Please enter your comment!
Please enter your name here