More

    Maximum severity vulnerability puts over 1200 SAP NetWeaver servers at risk of hijacking




    • SAP disclosed a 10/10 flaw in NetWeaver Visual Composer
    • The bug allows threat actors to upload malware
    • Researchers claim up to 1,200 instances are vulnerable

    More than 1,200 SAP instances are at risk of being hijacked, researchers are saying, as a critical vulnerability was found being abused in the wild. Earlier this week, SAP said it found an unauthenticated file upload vulnerability in NetWeaver Visual Composer’s Metadata Uploader component.

    Visual Composer is a development tool that allows users to build web-based business applications without writing code. It’s mostly used to create dashboards, forms, and interactive reports. The Metadata Uploader, on the other hand, is a tool for importing external data models (metadata) into the Visual Composer design environment. This allows developers to connect to remote data sources (web services, databases, or SAP systems).

    https://cdn.mos.cms.futurecdn.net/KrzT5MkZ7pQERcvimKN9ve.png



    Source link

    Latest articles

    spot_imgspot_img

    Related articles

    Leave a reply

    Please enter your comment!
    Please enter your name here

    spot_imgspot_img