๐Ÿ” CVE Alert

CVE-2026-24311

MEDIUM 5.6

Insecure Storage Protection vulnerability in SAP Customer Checkout 2.0

CVSS Score
5.6
EPSS Score
0.0%
EPSS Percentile
0th

The SAP Customer Checkout application exhibits certain design characteristics that involve locally storing operational data using reversible protection mechanisms. Access to this data, combined with user?initiated interaction, may allow modifications to occur without validation. Such changes could affect system behaviour during startup, resulting in a high impact on the application's confidentiality and integrity, with a low impact on availability.

Vendor sap_se
Product sap customer checkout 2.0
Published Mar 10, 2026
Last Updated Mar 10, 2026
Stay Ahead of the Next One

Get instant alerts for sap_se sap customer checkout 2.0

Be the first to know when new medium vulnerabilities affecting sap_se sap customer checkout 2.0 are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:P/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:L
Attack Vector
Physical
Attack Complexity
High
Privileges Required
High
User Interaction
Required
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
Low

Affected Versions

SAP_SE / SAP Customer Checkout 2.0
SAP_CUSTOMER_CHECKOUT 2.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
me.sap.com: https://me.sap.com/notes/3708457 url.sap: https://url.sap/sapsecuritypatchday