Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Critical SAP Flaws Pose Severe Security Risks

Critical SAP Flaws Pose Severe Security Risks

Posted on September 9, 2026 By CWS

SAP has rolled out essential security updates to mitigate several vulnerabilities, notably an extremely severe flaw in SAP Extended Passport (EPP) Processing. This flaw, identified as CVE-2026-44756, could drastically affect the application’s confidentiality, integrity, and availability.

Understanding CVE-2026-44756

Tracked under CVE-2026-44756, this vulnerability has been rated with a CVSS score of 10.0, indicating its critical nature. The flaw, termed OVERPASS, involves memory corruption in the SAP kernel’s handling of EPP. Discovered by Onapsis, it allows remote, unauthenticated attackers to execute arbitrary OS commands on the SAP host, potentially compromising business data and processes.

The vulnerability arises from inadequate boundary checks during the deserialization of EPP data, leading to potential memory safety issues. Attackers can exploit this by sending crafted network requests with malformed EPP headers, causing unintended behavior and program crashes.

Broader Implications and Exploitation Risks

According to JP Perez-Etchegoyen, CTO of Onapsis, the flaw is embedded in shared kernel code, making it accessible from various interfaces such as internet-facing web layers and SAP GUI layers. Its impact is substantial, as it can be accessed without credentials, posing a significant security challenge.

Exploitation enables attackers to retrieve sensitive information like database credentials and password hashes, access live user session data, and modify application configurations and binaries. It underscores the urgency of addressing this flaw promptly to safeguard SAP systems.

Additional Vulnerabilities and Recommendations

Another critical vulnerability patched by SAP is CVE-2026-58240, known as S4GET, which involves a missing authentication check in SAP NetWeaver Message Server. This flaw allows unauthorized actions by attackers with network access, posing a high risk across SAP S/4HANA and related products.

Further vulnerabilities include CVE-2026-76969 and CVE-2026-66768, involving credential disclosure and improper access control, respectively. Although these have not been exploited yet, the criticality necessitates immediate action.

Onapsis advises users to inventory SAP systems, prioritize patching for internet-facing systems, and monitor for exploitation attempts. Visibility into the SAP application layer is crucial to detect and respond to threats effectively.

In conclusion, while SAP’s recent updates address serious vulnerabilities, vigilance and proactive measures remain essential to protect enterprise systems from potential cyber threats.

The Hacker News Tags:authentication flaw, CVE-2026-44756, Cybersecurity, enterprise security, Onapsis, remote code execution, SAP, SAP NetWeaver, security updates, Vulnerabilities

Post navigation

Previous Post: Hackers Exploit Job Offers on LinkedIn to Spread Malware
Next Post: AI Empowers Cyberattackers with Advanced Capabilities

Related Posts

Cyber Espionage Campaign Hits Russian Aerospace Sector Using EAGLET Backdoor Cyber Espionage Campaign Hits Russian Aerospace Sector Using EAGLET Backdoor The Hacker News
Fake Crypto Firm Exposes North Korean IT Espionage Fake Crypto Firm Exposes North Korean IT Espionage The Hacker News
Aurora Ransomware Leveraging AI in Cyber Attacks Aurora Ransomware Leveraging AI in Cyber Attacks The Hacker News
Espionage Campaigns Target Pakistani Police Portals Espionage Campaigns Target Pakistani Police Portals The Hacker News
Critical Vulnerability in Gogs Allows Remote Code Execution Critical Vulnerability in Gogs Allows Remote Code Execution The Hacker News
Google Adds Layered Defenses to Chrome to Block Indirect Prompt Injection Threats Google Adds Layered Defenses to Chrome to Block Indirect Prompt Injection Threats The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • MapLibre Vulnerability Puts Millions at Risk of Attacks
  • AI Empowers Cyberattackers with Advanced Capabilities
  • Critical SAP Flaws Pose Severe Security Risks
  • Hackers Exploit Job Offers on LinkedIn to Spread Malware
  • HelmGuard Secures $7.3M to Enhance AI Governance and Security

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • MapLibre Vulnerability Puts Millions at Risk of Attacks
  • AI Empowers Cyberattackers with Advanced Capabilities
  • Critical SAP Flaws Pose Severe Security Risks
  • Hackers Exploit Job Offers on LinkedIn to Spread Malware
  • HelmGuard Secures $7.3M to Enhance AI Governance and Security

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark