CVE-2026-34261
MEDIUM
NVD
CVSS Score
6.5
Severity
MEDIUM
Published
Apr 14, 2026
Vendor
unknown
Description
Due to a missing authorization check in SAP Business Analytics and SAP Content Management, an authenticated user could make unauthorized calls to certain remote function modules, potentially accessing sensitive information beyond their intended permissions. This vulnerability affects confidentiality, with no impact on integrity and availability.