๐Ÿ” CVE Alert

CVE-2026-58244

MEDIUM 4.3

Missing Authorization Check in SAP Manufacturing Integration and Intelligence (MII)

CVSS Score
4.3
EPSS Score
0.0%
EPSS Percentile
0th

SAP Manufacturing Integration and Intelligence (MII) does not perform necessary authorization check on certain application function, allowing a low-privileged authenticated attacker to access information that should be restricted to privileged users. Successful exploitation could allow the attacker to access the users account information in the application, which could be leveraged to facilitate further attacks against the identified user accounts. This vulnerability results in low impact on confidentiality of the data, with no impact on the integrity and availability

Vendor sap_se
Product sap manufacturing integration and intelligence
Published Aug 11, 2026
Stay Ahead of the Next One

Get instant alerts for sap_se sap manufacturing integration and intelligence

Be the first to know when new medium vulnerabilities affecting sap_se sap manufacturing integration and intelligence are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
Low
Integrity
None
Availability
None

Affected Versions

SAP_SE / SAP Manufacturing Integration and Intelligence
XMII 15.4 15.5

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
me.sap.com: https://me.sap.com/notes/3781137 url.sap: https://url.sap/sapsecuritypatchday