CVE-2026-58238
published 2026-08-11CVE-2026-58238: SAP Approuter does not sufficiently handle certain requests under specific conditions. An unauthenticated attacker could send specially crafted input that…
PriorityP433medium5.9CVSS 3.1
AVNACHPRNUINSUCNINAH
EPSS
0.26%
17.8th percentile
SAP Approuter does not sufficiently handle certain requests under specific conditions. An unauthenticated attacker could send specially crafted input that causes the component to crash and restart. Successful exploitation requires specific runtime conditions to be met, making the attack complex to execute. This results in a high impact on availability. There is no impact on confidentiality and integrity.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| sap_se | sap_business_ai_platform | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
SAP Approuter does not sufficiently handle certain requests under specific conditions.
ghsa_unreviewed·2026-08-11
CVE-2026-58238 [MEDIUM] CWE-770 SAP Approuter does not sufficiently handle certain requests under specific conditions.
SAP Approuter does not sufficiently handle certain requests under specific conditions. An unauthenticated attacker could send specially crafted input that causes the component to crash and restart. Successful exploitation requires specific runtime conditions to be met, making the attack complex to execute. This results in a high impact on availability. There is no impact on confidentiality and integrity.
VulDB
SAP Approuter resource consumption
vuldb·2026-08-11·CVSS 5.9
CVE-2026-58238 [MEDIUM] SAP Approuter resource consumption
A vulnerability classified as critical has been found in SAP Approuter. This affects an unknown function. This manipulation causes resource consumption.
This vulnerability is tracked as CVE-2026-58238. The attack is possible to be carried out remotely. No exploit exists.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-08-11
Published