VYPR
Unrated severityNVD Advisory· Published Jul 14, 2026· Updated Jul 14, 2026

Information Disclosure vulnerability in SAP HANA Extended Application Services classic model (User Self Service)

CVE-2026-44753

Description

SAP HANA Database (user self service tools) allows an unauthenticated user to send specially crafted requests that produce distinguishable responses, enabling enumeration of valid user accounts and email addresses. Successful exploitation could allow the attacker to enumerate valid user accounts, resulting in low impact on confidentiality, with no impact on integrity and availability of the application.

Affected products

2

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.