← back
CVE-2026-0496mediumCWE-434

Multiple vulnerabilities in SAP Fiori App (Intercompany Balance Reconciliation)

13Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 6.6epss 0.2%
exploitation probability
0.2%top 88% of all CVEs
observed exploitation
nono source reports it
SAP Fiori App Intercompany Balance Reconciliation allows an attacker with high privileges to upload any file (including script files) without proper file format validation. This has low impact on confidentiality, integrity and availability of the application.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:L