Meet the Authors

Key Takeaways What you need to know
  1. The ICM component of SAP platforms (including NetWeaver, S/4HANA, and the SAP Web Dispatcher) has ICMAD security and vulnerabilities; CVE-2022-22536 is the most severe vulnerability.

  2. Working with SAP NetWeaver, an ICM security set-up, enhances the customer's web server security.

  3. Organizations must embrace a proactive and comprehensive security strategy to reduce attack vectors.

Sensitive data theft, disruption of mission-critical business processes, ransomware, and halt of all operations were warnings from the Cybersecurity and Infrastructure Security Agency (CIA) two years ago. The alert concerned severe security flaws, termed ICMAD (Internet Communication Manager Advanced Desync), affecting businesses using SAP.