Auto-Color: Backdoor Deployed via SAP NetWeaver Exploit
Auto-Color is a backdoor that was deployed in an attack against a U.S.-based chemicals company in April 2025, exploiting the critical SAP…
Auto-Color is a backdoor that was deployed in an attack against a U.S.-based chemicals company in April 2025, exploiting the critical SAP…
A maximum-severity vulnerability in SAP Commerce Cloud, tracked as CVE-2026-58231, is now being actively exploited in the wild, just days after SAP…
CVE-2025-31324 is a critical vulnerability in SAP NetWeaver that has been weaponized by China-nexus espionage clusters such as UNC5221, UNC5174, and CL-STA-0048,…
SAP Application Server ABAP for SAP NetWeaver and ABAP Platform is affected by CVE-2026-34265, an out-of-bounds write vulnerability that can be exploited…
SAP NetWeaver is an application platform that was affected by CVE-2025-31324, a critical vulnerability exploited by multiple threat actors.
SAP has released patches for a maximum-severity vulnerability in Commerce Cloud (Data Hub Adapter) that could allow unauthenticated attackers to execute arbitrary…
A critical out-of-bounds write vulnerability in Application Server ABAP for SAP NetWeaver and ABAP Platform (CVSS 9.8) allows an unauthenticated attacker to…
SAP NetWeaver Application Server ABAP is a key component of SAP's technology stack, enabling ABAP-based applications. A critical out-of-bounds write vulnerability (CVE-2026-44747)…
SAP is a multinational software corporation that develops enterprise software, including SAP Commerce Cloud and SAP NetWeaver. The company has issued patches…