SAP Advanced Planning and Optimization (Model Mix Planning) contains a hardcoded credential within the source code of the application to perform authorization check to access certain functionalities in the application. An attacker with high privileges could leverage this hardcoded credential to bypass authorization and delete specific planning-related restrictions in the application. Successful exploitation could result in a low impact on confidentiality and integrity, with no impact on availability of the application.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-08-11 01:17
Updated : 2026-08-26 19:00
NVD link : CVE-2026-58245
Mitre link : CVE-2026-58245
CVE.ORG link : CVE-2026-58245
JSON object : View
Products Affected
No product.
CWE
CWE-798
Use of Hard-coded Credentials
