CVE-2026-34257Disclosure(sap / netweaver_application_server_abap)

LOWCVSS 6.1 · MEDIUM

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Due to an Open Redirect vulnerability in SAP NetWeaver Application Server ABAP, an unauthenticated attacker could craft malicious URL that, if accessed by a victim, they could be redirected to the page controlled by the attacker. This causes low impact on confidentiality and integrity of the application with no impact on availability.

0.0/ 10 priority

Sources & remediation

Vendor / third-party advisories
Weakness type (CWE)
CWE-601

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • netweaver_application_server_abap

Threat summary

  • 3 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • 3 total mentions across 1 day

Affected systems

Vendors
Products
netweaver_application_server_abap

14 versions affected across 1 product

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-04-14: 3Technical Details · 2026-04-14: 204-14
Signal classification2 categories
Disclosure
266.7%
General
133.3%
Referenced assets3 URLs
Full discourse3 posts
  • CVEarity@CVEarity
    General

    ⚡ New CVE Alert: CVE-2026-34257 📊 Severity: 6.1 🚨 Risk Level: Medium 🧩 Affects: Sap Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-34257 #CVE-2026-34257 #CVE #Medium #Sap #CyberSecurity #InfoSec https://t.co/1GnVAZwjJj

    Post summary

    The tweet signals the existence of CVE‑2026‑34257, noting its medium severity and that it affects SAP, but provides no deeper technical or exploit information.

    0000028
    137 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-34257 Open Redirect Vulnerability in SAP NetWeaver Application Server ABAP https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-34257

    Post summary

    The text announces the disclosure of CVE-2026-34257, an Open Redirect vulnerability in SAP NetWeaver Application Server ABAP, without providing PoC, exploit details, patches, or active exploitation evidence.

    0000045
    4.0K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-34257 Due to an Open Redirect vulnerability in SAP NetWeaver Application Server ABAP, an unauthenticated attacker could craft malicious URL that, if accessed by a victim, t… https://www.cve.org/CVERecord?id=CVE-2026-34257

    Post summary

    CVE-2026-34257 is an open‑redirect vulnerability in SAP NetWeaver ABAP, permitting unauthenticated attackers to craft malicious URLs for redirecting victims, with no evidence of exploitation or remediation listed.

    0000088
    57.2K followersView on X
CPE platform detail14 entries

14 of 14 entries

PartVendorProductVersionTarget SWTarget HW
Appsapnetweaver_application_server_abap700--
Appsapnetweaver_application_server_abap701--
Appsapnetweaver_application_server_abap702--
Appsapnetweaver_application_server_abap731--
Appsapnetweaver_application_server_abap740--
Appsapnetweaver_application_server_abap750--
Appsapnetweaver_application_server_abap752--
Appsapnetweaver_application_server_abap753--
Appsapnetweaver_application_server_abap754--
Appsapnetweaver_application_server_abap755--
Appsapnetweaver_application_server_abap756--
Appsapnetweaver_application_server_abap757--
Appsapnetweaver_application_server_abap758--
Appsapnetweaver_application_server_abap816--

Explore more