Impact
SAP NetWeaver Application Server ABAP contains a memory corruption flaw that can be triggered by an authenticated user leveraging logical errors in its memory management. This results in unauthorized data access, data modification, or system unavailability, affecting confidentiality, integrity, and availability. The flaw is classified as CWE‑787.
Affected Systems
The affected product is SAP NetWeaver Application Server ABAP (SAP_SE). No specific version information is provided, so all releases are potentially impacted until a patch is applied.
Risk and Exploitability
The EPSS score of < 1% indicates a very low exploitation probability, while the CVSS base score of 9.9 signals a high‑severity issue. Attackers must be authenticated to exploit the flaw, indicating it is an internal threat that could be leveraged inside a network that grants user access. The memory corruption could allow the attacker to read or modify sensitive data, or cause a denial of service, potentially leading to full compromise of the application.
OpenCVE Enrichment