Back

MEDIUM

Missing Authorization Check in ABAP based SAP systems

Published Feb 10, 2026

Description

In ABAP based SAP systems a remote enabled function module does not perform necessary authorization checks for an authenticated user resulting in disclosure of system information.This has low impact on confidentiality. Integrity and availability are not impacted.

Affected products

Remediation

No remediation recorded yet.

References (3)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner sap
Published Feb 10, 2026
Updated Feb 10, 2026
Reserved Dec 9, 2025
CISA Vulnrichment
Updated Feb 10, 2026
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner sap
Published Feb 10, 2026
Updated Feb 10, 2026
Exploited since n/a
EUVD-2026-6873