SAP GUI for Windows allows DLL files to be loaded from arbitrary directories within the application. An unauthenticated attacker could exploit this vulnerability by persuading a victim to place a malicious DLL within one of these directories. The malicious command is executed in the victim user's context provided GuiXT is enabled. This vulnerability has a low impact on confidentiality, integrity, and availability.
History

Tue, 10 Mar 2026 17:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 10 Mar 2026 14:15:00 +0000

Type Values Removed Values Added
First Time appeared Sap Se
Sap Se sap Gui For Windows With Active Guixt
Vendors & Products Sap Se
Sap Se sap Gui For Windows With Active Guixt

Tue, 10 Mar 2026 00:45:00 +0000

Type Values Removed Values Added
Description SAP GUI for Windows allows DLL files to be loaded from arbitrary directories within the application. An unauthenticated attacker could exploit this vulnerability by persuading a victim to place a malicious DLL within one of these directories. The malicious command is executed in the victim user's context provided GuiXT is enabled. This vulnerability has a low impact on confidentiality, integrity, and availability.
Title DLL Hijacking vulnerability in SAP GUI for Windows with active GuiXT
Weaknesses CWE-427
References
Metrics cvssV3_1

{'score': 5, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: sap

Published: 2026-03-10T00:18:00.851Z

Updated: 2026-03-10T16:53:07.917Z

Reserved: 2026-01-21T22:15:25.361Z

Link: CVE-2026-24317

cve-icon Vulnrichment

Updated: 2026-03-10T15:36:05.638Z

cve-icon NVD

Status : Received

Published: 2026-03-10T17:35:56.040

Modified: 2026-03-10T17:35:56.040

Link: CVE-2026-24317

cve-icon Redhat

No data.