Security Advisory

CVE-2026-0509

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-02-10 03:01:52
Last updated 2026-02-10 16:27:08
Assigner sap
State PUBLISHED

Description

SAP NetWeaver Application Server ABAP and ABAP Platform allows an authenticated, low-privileged user to perform background Remote Function Calls without the required S_RFC authorization in certain cases. This can result in a high impact on integrity and availability, and no impact on the confidentiality of the application.