ZeroHour

CVE-2026-0486

CVSS 3.1
4.3 medium
EPSS
<1%p7
Published
()
Modified
Description

In ABAP based SAP systems a remote enabled function module does not perform necessary authorization checks for an authenticated user resulting in disclosure of system information.This has low impact on confidentiality. Integrity and availability are not impacted.

Vendors
sap
Products
solution tools plug-in
Weakness
CWE-862
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.