4.3
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Description
SAP Financial Consolidation allows an authenticated attacker to disconnect other users by terminating their sessions temporarily preventing access. However, the application itself cannot be compromised resulting in a low impact on availability. There is no impact on confidentiality and integrity of the data
Basic Information
ID
CVE-2026-40136
Source
sap
Published
May 12, 2026 at 02:21
Affected Product
Vendor
SAP_SE
Product
SAP Financial Consolidation
Version
FINANCE 1010
Affected Versions
SAP_SE SAP Financial Consolidation FINANCE 1010