CNNVD-202602-1705 Information

CNNVD ID

CNNVD-202602-1705

CVE-2026-0509

  • CNNVD Published: 2026-02-10

Description (Chinese)

SAP ABAP Platform和SAP NetWeaver Application Server ABAP都是德国思爱普(SAP)公司的产品。SAP ABAP Platform是一个基于 ABAP 的 SAP 解决方案。SAP NetWeaver Application Server ABAP是一个运行和开发基于ABAP语言的应用程序的平台。 SAP ABAP Platform和SAP NetWeaver Application Server ABAP存在安全漏洞,该漏洞源于低权限用户在某些情况下可能在没有所需S_RFC授权的情况下执行后台远程函数调用。

Description (English)

SAP ABAP Platform and SAP NetWeaver Application Server ABAP are products of SAP Germany. SAP ABAP Platform is a SAP solution based on ABAP. SAP NetWeaver Application Server ABAP is a platform for the operation and development of applications based on the AABAP language. SAP AABAP Platform and SAP NetWeaver Application Server AABAP have a security loophole, which stems from the fact that low-authorized users may, in some cases, perform back-office remote calls without the required S RFC authorization.

Hazard Level

Low

Vulnerability Type

其他

Affected Vendor

思爱普

Published

2026-02-10

Last Modified

2026-02-24

References

https://me.sap.com/notes/3674774 https://url.sap/sapsecuritypatchday

Patch

https://me.sap.com/notes/3674774

Share on: