AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-58236

MEDIUM · CVSS 5.5 EPSS 0.38% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

SAP NetWeaver Application Server ABAP and ABAP Platform are vulnerable to a privilege escalation flaw that allows attackers to bypass security controls, potentially leading to unauthorized execution of operating system commands. This could enable an attacker to disrupt system availability by stopping the SAP system or writing to the operating system. Organizations using these SAP products should prioritize addressing this vulnerability to mitigate risks to system availability.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-58236
Severity
MEDIUM
CVSS
5.5
EPSS
0.38%

Original NVD Description

SAP NetWeaver Application Server ABAP and ABAP Platform allow an attacker with high privileges to bypass missing security controls on an internal code path leading to operating system command execution. Successful exploitation could allow the attacker to execute OS-level commands that write to the operating system or stop the SAP system, resulting in no impact on confidentiality, low impact on integrity, and high impact on availability.