SICHERHEIT & DATENSCHUTZ

SAP releases critical security updates for NetWeaver

SAP releases critical security updates for NetWeaver

SAP released critical security updates for NetWeaver in July 2026, including a severe vulnerability with a CVSS score of 9.9.

SAP released a series of security updates on July 16, 2026, addressing several vulnerabilities in its products. Among these updates is a critical security vulnerability in the SAP NetWeaver Application Server ABAP, classified as CVE-2026-44747. This vulnerability has a CVSS score of 9.9, making it one of the most severe threats to the security of SAP systems.

The vulnerability is known as an Out-of-Bounds Write error and allows an authenticated attacker to exploit logical errors in memory management. This can lead to memory corruption, enabling the attacker to alter or expose data. The impact of this vulnerability is significant, as it can potentially jeopardize the integrity and confidentiality of data in affected systems.

In addition to CVE-2026-44747, SAP has also addressed other security vulnerabilities in its products. The updates are part of the regular security reviews that SAP conducts to ensure the security of its software solutions. Companies using SAP products are strongly urged to implement the latest patches promptly to protect their systems from potential attacks.

Details on the Vulnerability CVE-2026-44747

The specific vulnerability CVE-2026-44747 affects the way the SAP NetWeaver Application Server ABAP handles memory. An attacker with valid credentials can exploit this vulnerability to gain unauthorized access to sensitive data or manipulate existing data. This poses a significant risk to companies that rely on the integrity of their data.

The vulnerability has been classified as critical because it not only jeopardizes the confidentiality of data but can also impact the availability of systems. A successful attack could result in systems malfunctioning or data being irretrievably lost. Therefore, it is of utmost importance that companies apply the provided security updates without delay.

SAP's Response and Recommendations for Companies

SAP has released the security updates as part of its ongoing efforts to improve product security. The company recommends that all users install the updates as soon as possible to protect their systems. The security updates are available through official SAP channels and should be integrated into the regular maintenance schedules of companies.

In addition to technical measures, companies should also review their security policies and ensure that all employees are informed about the risks and importance of cybersecurity. Training and awareness initiatives can help minimize the risk of attacks and improve the overall security posture.

The release of these critical security updates underscores the need for companies to take proactive measures and regularly check their systems for vulnerabilities. The threat of cyberattacks is steadily increasing, and companies must prepare accordingly to protect their data and systems.

comment Kommentare (0)

Noch keine Kommentare. Schreiben Sie den ersten!

Kommentar hinterlassen