Medium severity4.3NVD Advisory· Published Feb 24, 2026· Updated Jun 17, 2026
CVE-2026-24314
CVE-2026-24314
Description
Under certain conditions SAP S/4HANA (Manage Payment Media) allows an authenticated attacker to access information which would otherwise be restricted. This could cause low impact on confidentiality of the application while integrity and availability are not impacted.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
9cpe:2.3:a:sap:s\/4hana_uiapfi70:600:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:sap:s\/4hana_uiapfi70:600:*:*:*:*:*:*:*
- cpe:2.3:a:sap:s\/4hana_uiapfi70:700:*:*:*:*:*:*:*
- cpe:2.3:a:sap:s\/4hana_uiapfi70:800:*:*:*:*:*:*:*
- cpe:2.3:a:sap:s\/4hana_uiapfi70:900:*:*:*:*:*:*:*
- cpe:2.3:a:sap:s\/4hana_uiapfi70:901:*:*:*:*:*:*:*
- cpe:2.3:a:sap:s\/4hana_uiapfi70:902:*:*:*:*:*:*:*
- cpe:2.3:a:sap:s\/4hana_uis4h:109:*:*:*:*:*:*:*
- SAP_SE/S/4HANA (Manage Payment Media)v5Range: UIAPFI70 600
Patches
Vulnerability mechanics
References
2- url.sap/sapsecuritypatchdaynvdVendor Advisory
- me.sap.com/notes/3646297nvdPermissions Required
News mentions
0No linked articles in our index yet.