Due to insufficient authorization checks in the SAP Incentive and Commission Management application, authenticated users could invoke a remote-enabled function module to perform table update operations. This vulnerability has a low impact on integrity with no impact on confidentiality and availability of the application.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-05-12 03:16
Updated : 2026-06-17 10:44
NVD link : CVE-2026-40134
Mitre link : CVE-2026-40134
CVE.ORG link : CVE-2026-40134
JSON object : View
Products Affected
No product.
CWE
CWE-862
Missing Authorization
