Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-58233

Опубликовано: 14 июл. 2026
Источник: nvd
CVSS3: 7.6
EPSS Низкий

Описание

SAP Change and Transport System Attach Tool (ctsattach) allows an authenticated attacker to supply a specially crafted archive file which, when processed by the application�s library, can trigger insecure deserialization and lead to remote code execution (RCE) on the system. Successful exploitation requires a victim to process the malicious archive, enabling the attacker to execute the RCE and extract sensitive information and gain control over the system and its processes. This vulnerability has a high impact on confidentiality and integrity of the data, with a low impact on the availability of the system.

EPSS

Процентиль: 24%
0.00314
Низкий

7.6 High

CVSS3

Дефекты

CWE-502

Связанные уязвимости

CVSS3: 7.6
github
19 дней назад

SAP Change and Transport System Attach Tool (ctsattach) allows an authenticated attacker to supply a specially crafted archive file which, when processed by the application�s library, can trigger insecure deserialization and lead to remote code execution (RCE) on the system. Successful exploitation requires a victim to process the malicious archive, enabling the attacker to execute the RCE and extract sensitive information and gain control over the system and its processes. This vulnerability has a high impact on confidentiality and integrity of the data, with a low impact on the availability of the system.

CVSS3: 7.6
fstec
19 дней назад

Уязвимость компонента ctsattach инструмента управления документацией и файлами SAP Change and Transport System Attach Tool, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 24%
0.00314
Низкий

7.6 High

CVSS3

Дефекты

CWE-502