CVE-2026-58235

SAP NetWeaver Application Server Java (Adobe Document Service) uses outdated open source cryptographic and data transfer libraries that contain known vulnerabilities addressed in later versions. A low-privileged authenticated attacker could potentially leverage these weaknesses against the affected component, though no specific exploit is currently known. Successful exploitation could result in low impact on confidentiality, integrity, and availability of the system.

Scoring

Severity
MEDIUM
CVSS base score
6.3
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
EPSS probability
0.17%
CWE
CWE-1395
Published
2026-08-11
Last modified
2026-08-11

Affected products

Weakness type

Related vulnerabilities

Markdown version · Browse all CVEs