Due to a missing authorization check in SAP Business Analytics and SAP Content Management, an authenticated user could make unauthorized calls to certain remote function modules, potentially accessing sensitive information beyond their intended permissions. This vulnerability affects confidentiality, with no impact on integrity and availability.
Metrics
Affected Vendors & Products
References
History
Tue, 14 Apr 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sap
Sap business Analytics Sap content Management |
|
| Vendors & Products |
Sap
Sap business Analytics Sap content Management |
Tue, 14 Apr 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 14 Apr 2026 01:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Due to a missing authorization check in SAP Business Analytics and SAP Content Management, an authenticated user could make unauthorized calls to certain remote function modules, potentially accessing sensitive information beyond their intended permissions. This vulnerability affects confidentiality, with no impact on integrity and availability. | |
| Title | Missing Authorization check in SAP Business Analytics and SAP Content Management | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2026-04-14T13:14:17.473Z
Reserved: 2026-03-26T19:02:45.983Z
Link: CVE-2026-34261
Updated: 2026-04-14T13:08:59.407Z
Status : Received
Published: 2026-04-14T01:16:03.897
Modified: 2026-04-14T01:16:03.897
Link: CVE-2026-34261
No data.