Information Disclosure Vulnerability in SAP Web Dispatcher and SAP Content Server
CVE-2026-76968
6.5MEDIUM
Key Information:
- Vendor
SAP
- Vendor
- CVE Published:
- 8 September 2026
What is CVE-2026-76968?
An authenticated low-privileged attacker can exploit specific features of SAP Web Dispatcher, Internet Communication Manager, and SAP Content Server. This vulnerability enables access to certain administrative functionalities and interfaces, potentially exposing sensitive information about the system state. The disclosed information might assist in executing further attacks, thus significantly jeopardizing the confidentiality of the application.
Affected Version(s)
SAP Web Dispatcher, Internet Communication Manager and SAP Content Server KRNL64NUC 7.22
SAP Web Dispatcher, Internet Communication Manager and SAP Content Server 7.22EXT
SAP Web Dispatcher, Internet Communication Manager and SAP Content Server KRNL64UC 7.22