Security Advisories  

We've created the first of its kind, SecurityBridge Cloud Platform to prioritize SAP patches, updates and the remediation strategies essential for preventing the disruption of vital business systems. Our security advisories enable SAP users to understand the security and business implications of running SAP.

The user interface, is designed to be as intuitive as possible but we'd love to hear your feedback and opinions.
We hope you like it!
× Hey there! Glad you made it.
We have found 7 security advices for you to review.

 

 Severity
SAP© Security advisories 7
 System Types
Affected SAP© system types

 

Related note
3101299
CVSS
6.6

Affected system type
SAP Business One
Patchday
2022-01
Released on
2021/12/14

Description
[CVE-2021-42066] Information Disclosure vulnerability in SAP Business One

 

Related note
3133005
CVSS
5.3

Affected system type
Java
Patchday
2022-01
Released on
2021/12/28

Description
Update 2 to Security Note 3130521: [CVE-2021-44228] Remote Code Execution vulnerability associated with Apache Log4j 2 component used in Java Web Service Adapter of SAP NetWeaver Process Integration

 

Related note
3135581
CVSS
6.6

Affected system type
Java
Patchday
2022-01
Released on
2022/01/11

Description
Update 3 to Security Note 3130521: [CVE-2021-44228] Remote Code Execution vulnerability associated with Apache Log4j 2 component used in Java Web Service Adapter of SAP NetWeaver Process Integration

 

Related note
3131691
CVSS
5.5

Affected system type
Adobe LiveCycle Designer
Patchday
2022-01
Released on
2021/12/30

Description
[CVE-2021-44228] Remote Code Execution vulnerability associated with Apache Log4j 2 component used in SAP NetWeaver ABAP Server and ABAP Platform (Adobe LiveCycle Designer 11.0)

 

Related note
3124597
CVSS
6.1

Affected system type
SAP Enterprise Threat...
Patchday
2022-01
Released on
2022/01/11

Description
[CVE-2022-22529] Cross-Site Scripting (XSS) vulnerability in SAP Enterprise Threat Detection

 

Related note
3106528
CVSS
6.5

Affected system type
SAP Business One
Patchday
2022-01
Released on
2022/01/11

Description
[CVE-2021-44234] Information Disclosure vulnerability in SAP Business One

 

Related note
3112710
CVSS
4.3

Affected system type
ABAP
Patchday
2022-01
Released on
2022/01/11

Description
[CVE-2021-42067] Information Disclosure vulnerability in SAP NetWeaver Application Server for ABAP and ABAP Platform

 

 
ABEX logo

SecurityBridge helps in prioritizing SAP patches, updates and the remediation strategies essential for preventing the disruption of vital business systems. We help businesses in making their SAP systems more secure.

SecurityBridge

© Copyright 2024 by SecurityBridge GmbH

v34.1