SAP Publishes Fixes for High-Severity Security Vulnerabilities

SAP has released various patches for security vulnerabilities in several products, including two products that are considered to have a high severity rating.

13 Jun 2024 SintelSedat Akfidan 1 min read
SAP Publishes Fixes for High-Severity Security Vulnerabilities

SAP announced this week that new fixes for security vulnerabilities in various products were released as part of the June 2024 Security Patch Day.

Two of the patches include high-priority security notes addressing the most severe issue, a cross-site scripting (XSS) flaw in Financial Consolidation. This security note addresses two XSS vulnerabilities in SAP products (CVE-2024-37177) and has a score of 8.1 out of 10.

The second high-priority note resolves a denial-of-service security vulnerability in SAP's NetWeaver AS Java (CVE-2024-34688) and has a score of 7.5.

Source: SAP Fixes Security Vulnerabilities with High Severity (itsecurity.pt)