CRITICALVulnerability
Verified
Global
NVD CRITICAL: CVE-2026-58231 — SAP Commerce Cloud allows an unauthenticated attacker to abuse a default authent...
·Source: NIST NVD
Updated:
Executive Summary
SAP Commerce Cloud allows an unauthenticated attacker to abuse a default authentication client and submit specially crafted input to certain functions lacking sufficient validation. Successful exploitation could enable arbitrary code execution and compromise internal components, resulting in high impact on confidentiality, integrity, and availability of the application.
Analysis
SAP Commerce Cloud allows an unauthenticated attacker to abuse a default authentication client and submit specially crafted input to certain functions lacking sufficient validation. Successful exploitation could enable arbitrary code execution and compromise internal components, resulting in high impact on confidentiality, integrity, and availability of the application. CVSS Score: 10. Published: 2026-08-11T11:17:15.390.