MEDIUMVulnerability
CVE-2026-66761
SAP Approuter does not enforce sufficient flow control in certain functionality. An attacker with low privileges could send high volumes of data without consuming responses, causing unbounded memory growth. This results in a low impact on availability. There is no impact on confidentiality and integrity.
Properties
- severity
- MEDIUM
- score
- 4.3
- cve_id
- CVE-2026-66761
- vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
- published_at
- 2026-08-11T01:17:22.880
- last_modified
- 2026-08-26T19:00:14.450
Related Entities (2)
HAS_WEAKNESS (1)
→[Weakness]Allocation of Resources Without Limits or Throttling
DESCRIBED_BY (1)
→[Source]NVD
Explore deeper with Ninja Signal's threat intelligence graph