CVE-2026-58247
5.3
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Summary
SAP ABAP Platform allows an unauthenticated user to send a specially crafted request to an internal component. This could disclose limited, non-sensitive data from previously used memory, leading to a low on confidentiality, with no impact on integrity and availability of the application.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| SAP_SE | SAP ABAP Platform | KRNL64UC 7.53 | affected |
| SAP_SE | SAP ABAP Platform | KERNEL 7.53 | affected |
| SAP_SE | SAP ABAP Platform | 7.54 | affected |
| SAP_SE | SAP ABAP Platform | 7.77 | affected |
Weaknesses
- CWE-908: CWE-908: Use of Uninitialized Resource
ADP Enrichment
CISA ADP Vulnrichment
- SSVC:
- Exploitation: none
- Automatable: yes
- Technical Impact: partial
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.