Unrated severityNVD Advisory· Published Mar 10, 2026· Updated Mar 10, 2026
Missing Authorization check in SAP Solution Tools Plug-In (ST-PI)
CVE-2026-24313
Description
SAP Solution Tools Plug-In (ST-PI) contains a function module that does not perform the necessary authorization checks for authenticated users, allowing system information to be disclosed. This vulnerability has a low impact on confidentiality and does not affect integrity or availability.
Affected products
2- SAP_SE/SAP Solution Tools Plug-In (ST-PI)v5Range: ST-PI 2008_1_700
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.