SAP Alert
3163Warning Date
Severity Level
Warning Number
Target Sector
15 March, 2023
● Critical
2023-5506
All
SAP has released security updates to address multiple vulnerabilities in the following products:
- SAP Business Objects Business Intelligence Platform (CMC)
- SAP NetWeaver AS for Java - version 7.50
- SAP NetWeaver Application Server for ABAP and ABAP Platform
- SAP Business Objects Business Intelligence Platform (Adaptive Job Server)
- SAP Solution Manager and ABAP managed systems (ST-PI)
- SAP Host Agent (SAPOSCOL)
Attacker could exploit these vulnerabilities by doing the following:
- Command Execution
- Arbitrary Code Execution
- Directory Traversal
- Memory Corruption
The CERT team encourages users to review SAP security advisory and apply the necessary updates by logging in to the below page: