Authorization Bypass in SAP ABAP Development Tools Allowing Unauthorized Database Operations
CVE-2026-58243
8.8HIGH
What is CVE-2026-58243?
SAP ABAP Development Tools contains a flaw that fails to enforce adequate authorization controls for specific functionalities. This vulnerability permits low-privileged attackers to execute unauthorized database operations on SAP NetWeaver AS ABAP. If successfully exploited, this could lead to unauthorized access to sensitive information, modification of application data, and potential disruption for legitimate users, thereby undermining the overall security and operational integrity of the system.
Affected Version(s)
SAP ABAP Developer Tools SAP_BASIS 750
SAP ABAP Developer Tools SAP_BASIS 751
SAP ABAP Developer Tools SAP_BASIS 752