SAP Fiori App Intercompany Balance Reconciliation allows an attacker with high privileges to upload any file (including script files) without proper file format validation. This has low impact on confidentiality, integrity and availability of the application.
Metrics
Affected Vendors & Products
References
History
Tue, 13 Jan 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 13 Jan 2026 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sap
Sap fiori |
|
| Vendors & Products |
Sap
Sap fiori |
Tue, 13 Jan 2026 01:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SAP Fiori App Intercompany Balance Reconciliation allows an attacker with high privileges to upload any file (including script files) without proper file format validation. This has low impact on confidentiality, integrity and availability of the application. | |
| Title | Multiple vulnerabilities in SAP Fiori App (Intercompany Balance Reconciliation) | |
| Weaknesses | CWE-434 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2026-01-13T15:15:21.939Z
Reserved: 2025-12-09T22:06:38.258Z
Link: CVE-2026-0496
Updated: 2026-01-13T15:15:19.531Z
Status : Awaiting Analysis
Published: 2026-01-13T02:15:51.990
Modified: 2026-01-13T14:03:18.990
Link: CVE-2026-0496
No data.
OpenCVE Enrichment
Updated: 2026-01-13T09:27:02Z