logo

Critical SAP flaw allows remote attackers to bypass authentication

ID: 43365d0e-0ab4-5363-a494-a40319819824

STIX ID: report--43365d0e-0ab4-5363-a494-a40319819824

Feed Name: Bleeping Computer

Threat Score
75/100

Date Published: 2024-08-13

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

SAP's August 2024 security bulletin addresses 17 vulnerabilities, highlighting a critical authentication bypass in SAP BusinessObjects (CVE-2024-41730, CVSS 9.8) that can allow full system compromise and a critical SSRF in SAP Build Apps (CVE-2024-29415, CVSS 9.1); the advisory lists additional high-severity flaws across SAP products and urges immediate patching to prevent data theft, ransomware, or network infiltration.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.