CVE-2026-0511

HIGH

SAP Fiori App - Privilege Escalation

Title source: llm
STIX 2.1

Description

SAP Fiori App Intercompany Balance Reconciliation does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. This has high impact on confidentiality and integrity of the application ,availability is not impacted.

References (2)

Core 2
Core References

Scores

CVSS v3 8.1
EPSS 0.0005
EPSS Percentile 16.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-862
Status published
Products (14)
SAP_SE/SAP Fiori App (Intercompany Balance Reconciliation) 103
SAP_SE/SAP Fiori App (Intercompany Balance Reconciliation) 104
SAP_SE/SAP Fiori App (Intercompany Balance Reconciliation) 105
SAP_SE/SAP Fiori App (Intercompany Balance Reconciliation) 106
SAP_SE/SAP Fiori App (Intercompany Balance Reconciliation) 107
SAP_SE/SAP Fiori App (Intercompany Balance Reconciliation) 108
SAP_SE/SAP Fiori App (Intercompany Balance Reconciliation) 600
SAP_SE/SAP Fiori App (Intercompany Balance Reconciliation) 700
SAP_SE/SAP Fiori App (Intercompany Balance Reconciliation) 800
SAP_SE/SAP Fiori App (Intercompany Balance Reconciliation) 900
... and 4 more
Published Jan 13, 2026
Tracked Since Feb 18, 2026