CVE-2026-58231

CRITICAL10.0Publiée le 11 août 2026

SAP Commerce Cloud allows an unauthenticated attacker to abuse a default authentication client and submit specially crafted input to certain functions lacking sufficient validation. Successful exploitation could enable arbitrary code execution and compromise internal components, resulting in high impact on confidentiality, integrity, and availability of the application.

Score CVSS10.0 / 10CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Type de faiblesse (CWE)CWE-94

Articles liés

This product uses the NVD API but is not endorsed or certified by the NVD.

Base de données CVE