AUGUST 26, 2026
Live Feed
Back to database
Case File

CVE-2026-44754

MEDIUM · CVSS 6.6 EPSS 0.22%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2026-06-09 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 6.6. It may be remotely exploitable.

CVE
CVE-2026-44754
Severity
MEDIUM
CVSS
6.6
EPSS
0.22%

Original NVD Description

The Remote Function Call (RFC) modules of the Operational Data Provisioning Data Replication API (ODP-RFC) are missing caller identification of permitted SAP-internal applications and are being used by customer or third-party applications in ways that are not aligned with its intended usage. Which could lead to unintended disclosure of data, but does not affect integrity, and poses minimal availability concerns for the application.