What is CVE-2026-58236?
This critical vulnerability (CVE-2026-58236) in SAP NetWeaver Application Server ABAP and ABAP Platform allows a high-privileged attacker to execute OS commands by bypassing missing security controls on an internal code path. Successful exploitation could lead to operating system-level command execution and write operations on affected systems. Immediate application of SAP's security patches is strongly recommended.
Azərbaycanca: Bu kritik zəiflik (CVE-2026-58236) SAP NetWeaver Application Server ABAP və ABAP Platform-da yüksək imtiyazlı təcavüzkarın OS əmrlərini icra etməsinə imkan yaradır. Təsirə məruz qalan sistemlərdə daxili kod yolundakı yoxlama çatışmazlığını aşaraq, təcavüzkar əməliyyat sistemi səviyyəsində yazma əməliyyatları həyata keçirə bilər. SAP tərəfindən buraxılmış təhlükəsizlik yeniləmələri dərhal tətbiq edilməlidir.
Related CVEs
link basis: same weakness class CWE-78
FAQ2
Which SAP NetWeaver components are affected by CVE-2026-58236?
This critical vulnerability affects SAP NetWeaver Application Server ABAP and ABAP Platform.
What can an attacker achieve by successfully exploiting CVE-2026-58236?
A high-privileged attacker can bypass missing checks on an internal code path to achieve OS command execution and write operations.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.