SAP Process Integration (SOAP Adapter) allows a privileged user to send specially crafted requests containing deeply nested entity definitions, which under certain conditions could temporarily increase processor load and degrade system responsiveness. Successful exploitation results in low impact on availability with no impact on confidentiality and integrity.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-09-08 01:17
Updated : 2026-09-08 19:12
NVD link : CVE-2026-58234
Mitre link : CVE-2026-58234
CVE.ORG link : CVE-2026-58234
JSON object : View
Products Affected
No product.
CWE
CWE-776
Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')
