Team Swascan Discovered Critical Vulnerabilities In Numerous SAP Applications

in #bug5 years ago


Researchers have spotted numerous vulnerabilities affecting Systems Applications and Products (SAP) web applications. The flaws for which are all critical in nature, could have severely damaged the IT infrastructure of SAP upon an exploit.

SAP Web Applications Vulnerabilities


Team Swascan has once again come up with a peculiar security issue. They discovered numerous critical security vulnerabilities targeting SAP web applications. Following an exploit by an adversary, the flaws could have had severe impacts on SAP’s IT infrastructure.

Describing this criticality in their advisory, Swascan stated,

These, in the hands of Criminal hackers, could have caused damage to SAP in the field of data and information security and business continuity.
While the researchers have refrained from explicitly disclosing the nature of flaws, they do hint about the severity of the bugs. According to their findings, these flaws risked the confidentiality, integrity, and availability of SAP.

SAP Fixed The Flaws

Upon finding the bugs, team Swascan quickly got in touch with SAP PSIRT to resolve the issues. They followed responsible disclosure to close the criticalities. Eventually, SAP has fixed the vulnerabilities and has also credited the researchers in their Hall of Fame.

Commenting about this incident, Pierguido Iezzi, co-founder Swascan, stated,

Because we live in the era of Cyber Crime as a Service, threats, and vulnerabilities are growing exponentially. Those who have the task of protecting business infrastructures and consumers can no longer remain locked up in their own silo of expertise. Openness to external know-how and experience has become a must.
Swascan is an Italian cybersecurity firm aimed at resolving security issues in websites and information infrastructure. In the past, they have also found notable vulnerabilities affecting the infrastructure of tech giants such as Huawei, Lenovo, Microsoft, and Adobe. They focus more on the collaboration with cybersecurity researchers and the firms instead of discussing the flaws.

Let us know your thoughts in the comments.


Posted from my blog with SteemPress : https://latesthackingnews.com/2019/09/18/team-swascan-discovered-critical-vulnerabilities-in-numerous-sap-applications/

Coin Marketplace

STEEM 0.17
TRX 0.24
JST 0.034
BTC 95500.34
ETH 2808.64
SBD 0.66