SAP NetWeaver Application Server ABAP and ABAP Platform allow an attacker with high privileges to bypass missing security controls on an internal code path leading to operating system command execution. Successful exploitation could allow the attacker to execute OS-level commands that write to the operating system or stop the SAP system, resulting in no impact on confidentiality, low impact on integrity, and high impact on availability.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-08-11 01:17
Updated : 2026-08-26 19:00
NVD link : CVE-2026-58236
Mitre link : CVE-2026-58236
CVE.ORG link : CVE-2026-58236
JSON object : View
Products Affected
No product.
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
