SAP Fiori App Intercompany Balance Reconciliation allows an attacker with high privileges to send uploaded files to arbitrary emails which could enable effective phishing campaigns. This has low impact on confidentiality, integrity and availability of the application.
Metrics
Affected Vendors & Products
References
History
Tue, 13 Jan 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 13 Jan 2026 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sap
Sap fiori |
|
| Vendors & Products |
Sap
Sap fiori |
Tue, 13 Jan 2026 01:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SAP Fiori App Intercompany Balance Reconciliation allows an attacker with high privileges to send uploaded files to arbitrary emails which could enable effective phishing campaigns. This has low impact on confidentiality, integrity and availability of the application. | |
| Title | Multiple vulnerabilities in SAP Fiori App (Intercompany Balance Reconciliation) | |
| Weaknesses | CWE-15 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2026-01-13T15:15:41.236Z
Reserved: 2025-12-09T22:06:37.539Z
Link: CVE-2026-0495
Updated: 2026-01-13T15:15:38.575Z
Status : Awaiting Analysis
Published: 2026-01-13T02:15:51.830
Modified: 2026-01-13T14:03:18.990
Link: CVE-2026-0495
No data.
OpenCVE Enrichment
Updated: 2026-01-13T09:26:56Z