Critical SAP flaw allows remote attackers to bypass authentication
ID: 43365d0e-0ab4-5363-a494-a40319819824
STIX ID: report--43365d0e-0ab4-5363-a494-a40319819824
Feed Name: Bleeping Computer
Threat Score
SAP's August 2024 security bulletin addresses 17 vulnerabilities, highlighting a critical authentication bypass in SAP BusinessObjects (CVE-2024-41730, CVSS 9.8) that can allow full system compromise and a critical SSRF in SAP Build Apps (CVE-2024-29415, CVSS 9.1); the advisory lists additional high-severity flaws across SAP products and urges immediate patching to prevent data theft, ransomware, or network infiltration.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
