News

A critical SAP S/4HANA code injection flaw tracked as CVE-2025-42957 and allowing full system takeover has been exploited in ...
“While widespread exploitation has not yet been reported,” Germany-based SecurityBridge said in a blog on Thursday, it has ...
At the end of April, SAP had to close a critical security gap in Netweaver. Ransomware groups are now also attacking the leak.
SAP has voiced strong support for its NetWeaver middleware stack, in what could put acquisition rumors to rest for now.
We believe that NetWeaver will increasingly be adopted for broad technical architecture usage. SAP is the first vendor to tie multiple components together by common metadata.
Over 1,200 internet-exposed SAP NetWeaver instances are vulnerable to an actively exploited maximum severity unauthenticated file upload vulnerability that allows attackers to hijack servers.