SAP Patches XSS, DoS Vulnerabilities

  • 13 April 2016
  • 0 replies
  • 61 views

Userlevel 7
Badge +54
By SecurityWeek News on April 13, 2016
 
SAP on Tuesday released its latest patch update for its products, which includes 19 patch notes, 10 of which had a high priority rating.
 
There were 16 security notes included in the latest SAP Security Patch Day, to which the company added three Out-of-Band Security Notes released this month. Furthermore, SAP also released seven Support Package Notes, ERPScan, a company specialized in securing SAP and Oracle business software, explains.
 
The highest CVSS score of the vulnerabilities patched in the new round of updates is 7.5. Overall, SAP resolved five Cross-Site Scripting (XSS) issues in its products, 4 denial of service (DoS) vulnerabilities, 3 missing authorization checks, one Remote Command Execution (RCE) vulnerability, one SQL Injection, one information disclosure flaw, along with 4 other bugs.
 
Full Article

0 replies

Be the first to reply!

Reply