Boletines de Vulnerabilidades

CVE-2026-40134

   
Software afectado SAP
 
Due to insufficient authorization checks in the SAP Incentive and Commission Management application, authenticated users could invoke a remote-enabled function module to perform table update operations. This vulnerability has a low impact on integrity with no impact on confidentiality and availability of the application.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-40134