CVE-2026-0500 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Due to the usage of vulnerable third party component in SAP Wily Introscope Enterprise Manager (WorkStation), an unauthenticated attacker could create a malicio…
Critical CVSS: 9.6

CVE-2026-0500

Due to the usage of vulnerable third party component in SAP Wily Introscope Enterprise Manager (WorkStation), an unauthenticated attacker could create a malicious JNLP (Java Network Launch Protocol) file accessible by a public facing URL. When a victim clicks on the URL the accessed Wily Introscope Server could execute OS commands on the victim's machine. This could completely compromising confidentiality, integrity and availability of the system.
Vendor
Sap
Product
Introscope Enterprise Manager
CWE
CWE-94
Yayın Tarihi
2026-01-13 02:15:52
Güncelleme
2026-01-22 18:47:22
Source Identifier
cna@sap.com
KEV Date Added
-

Kategoriler

Referanslar