CVE-2026-40130 PUBLISHED

Memory Corruption vulnerability in SAPSPrint Service

Assigner: sap
Reserved: 09.04.2026 Published: 11.08.2026 Updated: 11.08.2026

SAP SAPSPrint Service has memory corruption vulnerabilities in the handling of certain commands. An unauthenticated attacker could send specially crafted requests that trigger a buffer overflow in the affected component. This causes a temporary service interruption and automatic restart, resulting in low impact on availability but no impact on confidentiality and integrity.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
CVSS Score: 5.3

Product Status

Vendor SAP_SE
Product SAPSPrint Service
Versions Default: unaffected
  • Version SAPSPRINT 8.00 is affected
  • Version 8.10 is affected

References

Problem Types