Memory Corruption Flaw in SAP NetWeaver Application Server ABAP
CVE-2026-34265
9.8CRITICAL
What is CVE-2026-34265?
The SAP NetWeaver Application Server ABAP is susceptible to a memory corruption vulnerability due to logical errors in the DIAG protocol parsing. This flaw allows an unauthenticated attacker to manipulate the system, potentially leading to the disclosure of sensitive information or a system crash. This can significantly affect the application's confidentiality, integrity, and availability, posing serious risks to enterprise operations.
Affected Version(s)
SAP NetWeaver and ABAP Platform KRNL64NUC 7.22
SAP NetWeaver and ABAP Platform 7.22EXT
SAP NetWeaver and ABAP Platform KRNL64UC 7.22