Ghostwire

CVE-2026-44751: Application server ABAP does not perform necessary authorization checks for an authenticated user allowing an attacker...

HIGH CVSS 7.5

Published: June 9, 2026 | Last Modified: June 9, 2026

Description

Application server ABAP does not perform necessary authorization checks for an authenticated user allowing an attacker to execute a report generation command which could overwrite information belonging to another user, resulting in escalation of privileges. This has high impact on integrity with low impact on availability and no impact on confidentiality of the application.

Ghostwire Analysis — What This Means Practically

This analysis is generated by Ghostwire from NVD, CISA KEV, EPSS, and open-source intelligence data. Verify findings through primary sources before acting.

Security Coverage (2 articles)

References