Skip to content

Secure EU

Menu
  • Home
Menu

CVE-2026-0488 – Code Injection vulnerability in SAP CRM and SAP S/4HANA (Scripting Editor)

Posted on February 10, 2026
CVE ID : CVE-2026-0488

Published : Feb. 10, 2026, 3:01 a.m. | 58 minutes ago

Description : An authenticated attacker in SAP CRM and SAP S/4HANA (Scripting Editor) could exploit a flaw in a generic function module call and execute unauthorized critical functionalities, which includes the ability to execute an arbitrary SQL statement. This leads to a full database compromise with high impact on confidentiality, integrity, and availability.

Severity: 9.9 | CRITICAL

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

Solution

©2026 Secure EU | Design: Newspaperly WordPress Theme