VYPR
Unrated severityNVD Advisory· Published Jul 14, 2026· Updated Jul 14, 2026

Missing Authorization check in SAP S/4HANA (Draft operation)

CVE-2026-44771

Description

SAP S/4HANA Draft operation does not perform necessary authorization checks for an authenticated user, a restricted user could access information within the entity resulting in escalation of privileges. This results in low impact on confidentiality, with no impact on integrity and availability of the application.

Affected products

1

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.