Shortfacts - October 2016


Remote access as an SAP risk
Onapsis, a global expert in the security of business-critical applications, drew a picture of the SAP security situation in various industries in 2016 with its "Business Risk Illustration" (BRI) risk analysis service introduced at the beginning of the year to assess SAP risks.
The vulnerability scans in the SAP implementations of companies from the production, oil and gas, aviation and pharmaceutical sectors revealed highly critical security gaps.
In many cases, remote access to SAP systems and thus remote control of applications and data traffic was possible.
To date, Onapsis has analyzed the individual SAP implementations in over 100 companies on site and made initial recommendations.
This revealed 480 vulnerabilities: 142 of them "critical" or "high" according to the criteria of the Common Vulnerability Scoring System (CSSV) - and therefore a high priority for closure.