CVE-2026-58245
Hard-coded Credentials in SAP Advanced Planning and Optimization (Model Mix Planning)
CVSS Score
3.8
EPSS Score
0.0%
EPSS Percentile
0th
SAP Advanced Planning and Optimization (Model Mix Planning) contains a hardcoded credential within the source code of the application to perform authorization check to access certain functionalities in the application. An attacker with high privileges could leverage this hardcoded credential to bypass authorization and delete specific planning-related restrictions in the application. Successful exploitation could result in a low impact on confidentiality and integrity, with no impact on availability of the application.
| Vendor | sap_se |
| Product | sap advanced planning and optimization (model mix planning) |
| Published | Aug 11, 2026 |
Stay Ahead of the Next One
Get instant alerts for sap_se sap advanced planning and optimization (model mix planning)
Be the first to know when new low vulnerabilities affecting sap_se sap advanced planning and optimization (model mix planning) are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N Attack Vector
Network
Attack Complexity
Low
Privileges Required
High
User Interaction
None
Scope
Unchanged
Confidentiality
Low
Integrity
Low
Availability
None
Affected Versions
SAP_SE / SAP Advanced Planning and Optimization (Model Mix Planning)
SCMAPO 713 714 S4CORE 102 103 104 S4COREOP 104 105 106 107 108 109 SCM 700 701 702 712