CISA Warns Admins To Patch SAP Vulnerability

February 11, 2022

The Cybersecurity and Infrastructure Security Agency (CISA) has warned administrators to patch their systems against a number of security flaws.

The vulnerabilities are identified as Internet Communication Manager Advanced Desync (ICMAD). These flaws impact the SAP business app using Internet Communication Manager (ICM).

The three ICMAD flaws include CVE-2022-22536, which is classified as a maximum severity problem, and two others, which are tracked as CVE-2022-22532 and CVE-2022-22533.

The SAP Product Security Response Team (PSRT) alongside Onapsis worked together to create the security patches for the vulnerabilities.

Failure to patch the flaws means organizations are ultimately exposed to data theft, risks of financial fraud, disruptions to mission-critical business processes, ransomware attacks, and others.

After successfully exploiting the ICMAD bugs, attackers can perform several actions against SAP users, including stealing credentials, triggering denials of service, executing code remotely, and compromising any unpatched SAP applications.

For more information, read the original story in BleepingComputer.

Top Stories

Related Articles

June 9, 2026 Hackers exploited Meta’s AI-powered support chatbot to gain control of Instagram accounts, including several high-profile profiles. Meta more...

June 5, 2026 Security researchers have disclosed a new denial-of-service attack called HTTP/2 Bomb that can overwhelm major web servers more...

May 20, 2026 The Cybersecurity and Infrastructure Security Agency, the arm of the U.S. government tasked with protecting critical infrastructure more...

May 11, 2026 Instructure has restored access to its Canvas learning platform after a cyberattack disrupted service for universities and more...

Picture of TND News Desk

TND News Desk

Staff writer for Tech Newsday.
Picture of TND News Desk

TND News Desk

Staff writer for Tech Newsday.

Jim Love

Jim is an author and podcast host with over 40 years in technology.

Share:
Facebook
Twitter
LinkedIn