← Back to CVE search

CVE-2026-58231

Description

SAP Commerce Cloud allows an unauthenticated attacker to abuse a default authentication client and submit specially crafted input to certain functions lacking sufficient validation. Successful exploitation could enable arbitrary code execution and compromise internal components, resulting in high impact on confidentiality, integrity, and availability of the application.

CVSS 10EPSS 0%Risk 1
View source
Published
2026-08-11 11:17:15
Last modified
2026-08-11 15:17:31
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H