Share:
Notifications
Clear all

CVE-2026-0488

1 Posts
1 Users
0 Reactions
235 Views
(@kajal)
Posts: 388
Reputable Member
Topic starter
 

Description

An authenticated attacker in SAP CRM and SAP S/4HANA (Scripting Editor) could exploit a flaw in a generic function module call and execute unauthorized critical functionalities, which includes the ability to execute an arbitrary SQL statement. This leads to a full database compromise with high impact on confidentiality, integrity, and availability.

 

References 

https://me.sap.com/notes/3697099

https://url.sap/sapsecuritypatchday

https://nvd.nist.gov/vuln/detail/CVE-2026-0488

 
Posted : 18/02/2026 9:45 pm
Share: