VYPR
Medium severity4.3NVD Advisory· Published Feb 10, 2026· Updated Jun 17, 2026

CVE-2026-23688

CVE-2026-23688

Description

SAP Fiori App Manage Service Entry Sheets does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. This has low impact on integrity, confidentiality and availability are not impacted.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

8
  • SAP/S4CORE6 versions
    cpe:2.3:a:sap:s4core:102:*:*:*:*:*:*:*+ 5 more
    • cpe:2.3:a:sap:s4core:102:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:s4core:103:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:s4core:104:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:s4core:105:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:s4core:106:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:s4core:107:*:*:*:*:*:*:*
  • S4CORE 102+ 1 more
    • (no CPE)range: S4CORE 102
    • (no CPE)

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.