Description
SAP Advanced Planning and Optimization (Model Mix Planning) contains a hardcoded credential within the source code of the application to perform authorization check to access certain functionalities in the application. An attacker with high privileges could leverage this hardcoded credential to bypass authorization and delete specific planning-related restrictions in the application. Successful exploitation could result in a low impact on confidentiality and integrity, with no impact on availability of the application.
Published: 2026-08-11
Score: 3.8 Low
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 11 Aug 2026 15:45:00 +0000

Type Values Removed Values Added
First Time appeared Sap Se
Sap Se sap Advanced Planning And Optimization (model Mix Planning)
Vendors & Products Sap Se
Sap Se sap Advanced Planning And Optimization (model Mix Planning)

Tue, 11 Aug 2026 00:45:00 +0000

Type Values Removed Values Added
Description SAP Advanced Planning and Optimization (Model Mix Planning) contains a hardcoded credential within the source code of the application to perform authorization check to access certain functionalities in the application. An attacker with high privileges could leverage this hardcoded credential to bypass authorization and delete specific planning-related restrictions in the application. Successful exploitation could result in a low impact on confidentiality and integrity, with no impact on availability of the application.
Title Hard-coded Credentials in SAP Advanced Planning and Optimization (Model Mix Planning)
Weaknesses CWE-798
References
Metrics cvssV3_1

{'score': 3.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N'}


Subscriptions

Sap Se Sap Advanced Planning And Optimization (model Mix Planning)
cve-icon MITRE

Status: PUBLISHED

Assigner: sap

Published:

Updated: 2026-08-11T14:30:11.628Z

Reserved: 2026-06-29T19:35:04.185Z

Link: CVE-2026-58245

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-11T01:17:22.397

Modified: 2026-08-11T01:17:22.397

Link: CVE-2026-58245

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-11T14:20:52Z

Weaknesses