CVE-2026-66764
MEDIUM
NVD
CVSS Score
4.3
Severity
MEDIUM
Published
Aug 11, 2026
Vendor
unknown
Description
Reprocess Bank Statement Items in SAP S/4HANA does not perform the necessary authorization checks for authenticated users, allowing them to use rules that have not been shared with them, resulting in privilege escalation.This vulnerability has a low impact on confidentiality, with no impact on integrity and availability of the application