logo

SAP Patches Maximum Severity “Overpass” Flaw

ID: 51d6bd96-35c4-5839-92a4-70296165cc0e

STIX ID: report--51d6bd96-35c4-5839-92a4-70296165cc0e

Feed Name: Infosecurity Magazine (News)

Threat Score
78/100

Date Published: 2026-09-09

Date Updated: 2026-09-11

...
...

Onapsis Research Labs disclosed a critical memory corruption vulnerability (CVE-2026-44756) in SAP Extended Passport (EPP) Processing that is remotely exploitable without authentication and could allow attackers to execute arbitrary OS commands with SAP administrative privileges; the report warns that this kernel-shared flaw affects many SAP components (reachable via SAP GUI and RFC) and may impact over 10,000 internet-facing SAP systems, and also lists other urgent high-severity SAP CVEs (including CVE-2026-58240 "S4GET").

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.