SAP Approuter does not sufficiently handle certain requests under specific conditions. An unauthenticated attacker could send specially crafted input that causes the component to crash and restart. Successful exploitation requires specific runtime conditions to be met, making the attack complex to execute. This results in a high impact on availability. There is no impact on confidentiality and integrity.
References
| Link | Resource |
|---|---|
| https://me.sap.com/notes/3786038 | Permissions Required |
| https://url.sap/sapsecuritypatchday | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2026-08-11 01:17
Updated : 2026-09-08 20:22
NVD link : CVE-2026-58238
Mitre link : CVE-2026-58238
CVE.ORG link : CVE-2026-58238
JSON object : View
Products Affected
sap
- approuter
CWE
CWE-770
Allocation of Resources Without Limits or Throttling
