← Back to CVE search

CVE-2026-66761

Description

SAP Approuter does not enforce sufficient flow control in certain functionality. An attacker with low privileges could send high volumes of data without consuming responses, causing unbounded memory growth. This results in a low impact on availability. There is no impact on confidentiality and integrity.

CVSS 4.3EPSS 0.22%Risk 0.44
View source
Published
2026-08-11 01:17:22
Last modified
2026-08-11 15:17:33
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L