SAP Fiori App Intercompany Balance Reconciliation allows an attacker with high privileges to send uploaded files to arbitrary emails which could enable effective phishing campaigns. This has low impact on confidentiality, integrity and availability of the application.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 13 Jan 2026 01:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SAP Fiori App Intercompany Balance Reconciliation allows an attacker with high privileges to send uploaded files to arbitrary emails which could enable effective phishing campaigns. This has low impact on confidentiality, integrity and availability of the application. | |
| Title | Multiple vulnerabilities in SAP Fiori App (Intercompany Balance Reconciliation) | |
| Weaknesses | CWE-15 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2026-01-13T01:13:20.999Z
Reserved: 2025-12-09T22:06:37.539Z
Link: CVE-2026-0495
No data.
Status : Received
Published: 2026-01-13T02:15:51.830
Modified: 2026-01-13T02:15:51.830
Link: CVE-2026-0495
No data.
OpenCVE Enrichment
No data.
Weaknesses