SEPTEMBER 13, 2026
Live Feed
Back to database
Case File

CVE-2026-44770

MEDIUM · CVSS 4.3 EPSS 0.17%

Source: NVD + CISA KEV + EPSS · Published 2026-07-14 · Last synced 2026-08-13

CyberRota Analysis

AI-Generated

The vulnerability allows authenticated users to bypass necessary authorization checks in SAP Create Single Payment, potentially exposing sensitive entity set keys to restricted users. While the impact on confidentiality is low and there is no effect on integrity or availability, organizations using this SAP product should prioritize remediation to mitigate any risk of unauthorized information disclosure.

CVE
CVE-2026-44770
Severity
MEDIUM
CVSS
4.3
EPSS
0.17%

Original NVD Description

SAP Create Single Payment does not perform necessary authorization checks for an authenticated user, a restricted user could access specific entity set keys resulting in disclosure of information. This has low impact on confidentiality, with no impact on integrity and availability of the application.