CVE-2026-44747

Der SAP NetWeaver Anwendungsserver ABAP ermöglicht es einem authentifizierten Angreifer, logische Fehler in der Speicherverwaltung auszun…

criticalEPSS 0.6%

Description

SAP NetWeaver Application Server ABAP allows an authenticated attacker to leverage logical errors in memory management to cause a memory corruption that could lead to unauthorized data access, modification, or system unavailability. This has high impact on confidentiality, integrity, and availability of the application.

Metrics

9.9
Source: nvd-v3
45.2 %
High — this CVE ranks above the median of all CVEs scored today (rank ≥ 36%).
Show all metrics
Severity
critical
no public PoC known
0.6 %
Low — model estimates < 1% exploitation likelihood.
Published
2026-07-14 00:19 UTC
CWE-787

Weakness classes (CWE)

  • CWE-787Base

    Out-of-bounds Write

    The product writes data past the end, or before the beginning, of the intended buffer.

    cwe.mitre.org →

References & sources

Reanalysis & status changes

Chronological NVD audit events for this CVE — reanalyses, CVSS updates, CPE diffs.

  1. CVE Modified2026-07-29 06:16 UTC· cna@sap.com
    • Affected: SAP NetWeaver Application Server ABAP → SAP NetWeaver Application Server ABAP

Linked advisories