CVE-2026-58234

low

Description

SAP Process Integration (SOAP Adapter) allows a privileged user to send specially crafted requests containing deeply nested entity definitions, which under certain conditions could temporarily increase processor load and degrade system responsiveness. Successful exploitation results in low impact on availability with no impact on confidentiality and integrity.

References

https://url.sap/sapsecuritypatchday

https://me.sap.com/notes/3736494

Details

Source: Mitre, NVD

Published: 2026-09-08

Updated: 2026-09-08

Risk Information

CVSS v2

Base Score: 1.7

Vector: CVSS2#AV:N/AC:H/Au:M/C:N/I:N/A:P

Severity: Low

CVSS v3

Base Score: 2.2

Vector: CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:L

Severity: Low

EPSS

EPSS: 0.00212