Unrated severityNVD Advisory· Published Jul 14, 2026· Updated Jul 14, 2026
Information Disclosure vulnerability in SAP HANA Extended Application Services classic model (User Self Service)
CVE-2026-44753
Description
SAP HANA Database (user self service tools) allows an unauthenticated user to send specially crafted requests that produce distinguishable responses, enabling enumeration of valid user accounts and email addresses. Successful exploitation could allow the attacker to enumerate valid user accounts, resulting in low impact on confidentiality, with no impact on integrity and availability of the application.
Affected products
2Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.