Loading market data...
← Back to CVE feed

CVE-2026-58231

CRITICAL CVSS 10.0 View on NVD ↗

Description

SAP Commerce Cloud allows an unauthenticated attacker to abuse a default authentication client and submit specially crafted input to certain functions lacking sufficient validation. Successful exploitation could enable arbitrary code execution and compromise internal components, resulting in high impact on confidentiality, integrity, and availability of the application.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Published: Aug 11, 2026 11:17 UTC Modified: Aug 12, 2026 05:17 UTC