← Back
CVE-2026-66768 critical CVSS 9.0

SAP GUI for Java does not correctly enforce the trust level policy for certain functions invoked from a connected backend system. A low-privileged attacker could exploit this weakness by manipulating...

Summary

SAP GUI for Java does not correctly enforce the trust level policy for certain functions invoked from a connected backend system. A low-privileged attacker could exploit this weakness by manipulating a connected backend system to trigger affected functionality. This could allow arbitrary command exe...

References

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →