More

    SAP fixes serious security issues – here’s how to stay safe



    • CVE-2025-42887 in SAP Solution Manager allows unauthenticated code injection and full system takeover
    • Vulnerability scored 9.9/10; patch released in SAP’s November 2025 update
    • SAP also fixed CVE-2024-42890, a 10/10 flaw in SQL Anywhere Monitor

    SAP Solution Manager, an application lifecycle management (ALM) platform with tens of thousands of user organizations, carried a critical severity vulnerability that allowed threat actors to fully take over compromised endpoints, experts have warned.

    Security researchers SecurityBridge, who notified SAP after finding the flaw, described as a “missing input sanitation” vulnerability, which allows unauthenticated threat actors to insert malicious code when calling a remote-enabled function module.


    https://cdn.mos.cms.futurecdn.net/KrzT5MkZ7pQERcvimKN9ve-1920-80.png



    Source link

    Latest articles

    spot_imgspot_img

    Related articles

    Leave a reply

    Please enter your comment!
    Please enter your name here

    spot_imgspot_img