SAP users patch now – worrying S/4HANA vulnerability being exploited in the wild




  • SAP patches critical S/4HANA flaw which allowed full system takeover
  • Attackers can inject ABAP code and bypass authorization using RFC
  • Some systems remain unpatched, and confirmed abuse has already occurred

S/4HANA, SAP’s Enterprise Resource Planning (ERP) software suite, was carrying a critical vulnerability which allowed threat actors to fully take over vulnerable endpoints.

The company has now released a patch after security researchers warned about “limited” abuse in the wild.

https://cdn.mos.cms.futurecdn.net/KrzT5MkZ7pQERcvimKN9ve.png



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img