SAP, a German software with products for organizing business processes, announced a few days ago that it has started to fix security issues identified in many of its cloud-based products. The company had previously conducted an internal review, during which it discovered these issues. So, it has already started working to eliminate the vulnerabilities.
No further information has been disclosed about the security issues found in the products. However, the company said earlier this week that the bug will be largely completed in the second quarter of 2020. The list of affected products includes the following: SAP Success Factors, SAP Concur, SAP / CallidusCloud Commissions, SAP / Callidus Cloud CPQ, SAP C4C / Sales Cloud, SAP Cloud Platform and SAP Analytics Cloud. Some of these platforms, along with their infrastructure, were acquired over the years, while the company paid billions of dollars for them. Thus, SAP “inherited” all possible gaps, which it had to align with the company’s existing contractual or legal security standards.

It is estimated that approximately 9% of SAP’s 440,000 customers are affected by the security issues identified in its cloud-based products. These customers will receive the necessary information about the potential risks, as well as the assistance they will need to address the issues. investigation is not yet complete, but the company does not believe that data has been breached, despite the security issues identified in its cloud-based products. Specifically, in an effort to ensure that the affected cloud-based products meet relevant terms and conditions, SAP will not only carry out the required technical remediation, but also the appropriate security. These security updates are not expected to have any impact on the company’s financial outlook for 2020.
