Maximum difficulty vulnerability puts over 1200 SAP netweaver -servers at risk of hijacking


  • SAP revealed a 10/10 error in Netweaver Visual Composer
  • The error allows threat actors to upload malware
  • Researchers claim up to 1,200 cases are vulnerable

More than 1,200 SAP deposits risk being hijacked, researchers say as a critical vulnerability was found abused in nature. Earlier this week, SAP said it found an unauthorized file upload vulnerability in Netweaver Visual Composers Metadata Uploader component.

Visual Composer is a development tool that allows users to build web -based business applications without writing code. It is mostly used to create dashboards, forms and interactive reports. On the other hand, the metadata -Uploader is a tool to import external data models (metadata) into the visual composer design environment. This allows developers to connect to external data sources (web services, databases or SAP systems).

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top