CVE-2026-44747
CRITICALSAP NetWeaver AS ABAP - Authenticated Memory Corruption
Title source: manualDescription
SAP NetWeaver Application Server ABAP allows an authenticated attacker to leverage logical errors in memory management to cause a memory corruption that could lead to unauthorized data access, modification, or system unavailability. This has high impact on confidentiality, integrity, and availability of the application.
References (2)
Core 2
Scores
CVSS v3
9.9
EPSS
0.0053
EPSS Percentile
42.0%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
total
Details
CWE
CWE-787
Status
published
Products (13)
SAP_SE/SAP NetWeaver Application Server ABAP
7.22EXT
SAP_SE/SAP NetWeaver Application Server ABAP
7.53
SAP_SE/SAP NetWeaver Application Server ABAP
7.53. 7.54
SAP_SE/SAP NetWeaver Application Server ABAP
7.77
SAP_SE/SAP NetWeaver Application Server ABAP
7.89
SAP_SE/SAP NetWeaver Application Server ABAP
7.93
SAP_SE/SAP NetWeaver Application Server ABAP
9.16
SAP_SE/SAP NetWeaver Application Server ABAP
9.18
SAP_SE/SAP NetWeaver Application Server ABAP
9.19
SAP_SE/SAP NetWeaver Application Server ABAP
9.20
... and 3 more
Published
Jul 14, 2026
Tracked Since
Jul 14, 2026