As cited
Copy frozen at (site build).
vulnerabilities
SAP Patches CVSS 10.0 Kernel Flaw Enabling Unauthenticated Remote Code Execution
SAP released security updates addressing multiple vulnerabilities, including CVE-2026-44756, a memory corruption flaw in SAP Extended Passport (EPP) Processing that enables unauthenticated remote code execution (RCE) with a CVSS score of 10.0. The flaw poses severe risk to the confidentiality, integrity, and availability of affected applications.
Why it matters: Organizations running SAP EPP must apply these patches immediately, as the maximum-severity vulnerability allows attackers to gain unauthenticated RCE on critical systems.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
vulnerabilities
SAP Patches CVSS 10.0 Kernel Flaw Enabling Unauthenticated Remote Code Execution
SAP released security updates addressing multiple vulnerabilities, including CVE-2026-44756, a memory corruption flaw in SAP Extended Passport (EPP) Processing that enables unauthenticated remote code execution (RCE) with a CVSS score of 10.0. The flaw poses severe risk to the confidentiality, integrity, and availability of affected applications.
Why it matters: Organizations running SAP EPP must apply these patches immediately, as the maximum-severity vulnerability allows attackers to gain unauthenticated RCE on critical systems.
- Source published
- First seen by Cybersecurity Tracker