Security Advisories  

We've created the first of its kind, SecurityBridge Cloud Platform to prioritize SAP patches, updates and the remediation strategies essential for preventing the disruption of vital business systems. Our security advisories enable SAP users to understand the security and business implications of running SAP.

The user interface, is designed to be as intuitive as possible but we'd love to hear your feedback and opinions.
We hope you like it!
× Yikes, there is work to do!
This time we found critical correction advisiories. We count 7 and the highest CVSS score is 9.8.

 

 Severity
SAP© Security advisories 7
 System Types
Affected SAP© system types

 

Related note
3189428
CVSS
9.8

Affected system type
SAP HANA Platform
Patchday
2022-04
Released on
2022/04/12

Description
[CVE-2022-22965] Remote Code Execution vulnerability associated with Spring Framework used in SAP HANA Extended Application Services

 

Related note
3189635
CVSS
9.8

Affected system type
SAP Customer...
Patchday
2022-04
Released on
2022/04/14

Description
[CVE-2022-22965] Remote Code Execution vulnerability associated with Spring Framework used in SAP Customer Profitability Analytics

 

Related note
3187290
CVSS
9.8

Affected system type
SAP Customer Checkout
Patchday
2022-04
Released on
2022/04/12

Description
[CVE-2022-22965] Remote Code Execution vulnerability associated with Spring Framework used in SAP Customer Checkout

 

Related note
3170990
CVSS
9.8

Affected system type
Any
Patchday
2022-04
Released on
2022/04/12

Description
[CVE-2022-22965] Central Security Note for Remote Code Execution vulnerability associated with Spring Framework

 

Related note
3189429
CVSS
9.8

Affected system type
Java
Patchday
2022-04
Released on
2022/04/12

Description
[CVE-2022-22965] Remote Code Execution vulnerability associated with Spring Framework used in PowerDesigner Web (up to including 16.7 SP05 PL01)

 

Related note
3171258
CVSS
9.8

Affected system type
SAP Commerce
Patchday
2022-04
Released on
2022/04/18

Description
[CVE-2022-22965] Remote Code Execution vulnerability associated with Spring Framework used in SAP Commerce

 

Related note
3158613
CVSS
9.1

Affected system type
Java
Patchday
2022-04
Released on
2022/04/12

Description
Update 1 to Security Note 3022622 - [CVE-2021-21480] Code injection vulnerability in SAP Manufacturing Integration and Intelligence

 

 
ABEX logo

SecurityBridge helps in prioritizing SAP patches, updates and the remediation strategies essential for preventing the disruption of vital business systems. We help businesses in making their SAP systems more secure.

SecurityBridge

© Copyright 2022 by SecurityBridge // NCMI GmbH