CVE-2026-23681 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Due to missing authorization check in a function module in SAP Support Tools Plug-In, an authenticated attacker could invoke specific function modules to retrie…
Medium CVSS: 4.3

CVE-2026-23681

Due to missing authorization check in a function module in SAP Support Tools Plug-In, an authenticated attacker could invoke specific function modules to retrieve information about the system and its configuration. This disclosure of the system information could assist the attacker to plan subsequent attacks. This vulnerability has a low impact on the confidentiality of the application, with no effect on its integrity or availability.
Vendor
Sap
Product
Solution Tools Plug-in
CWE
CWE-862
Yayın Tarihi
2026-02-10 04:16:02
Güncelleme
2026-02-17 16:04:47
Source Identifier
cna@sap.com
KEV Date Added
-

Kategoriler

Referanslar