Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 11 Aug 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sap Se
Sap Se sap S/4 Hana (reprocess Bank Statement Items) |
|
| Vendors & Products |
Sap Se
Sap Se sap S/4 Hana (reprocess Bank Statement Items) |
Tue, 11 Aug 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 11 Aug 2026 00:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Reprocess Bank Statement Items in SAP S/4HANA does not perform the necessary authorization checks for authenticated users, allowing them to use rules that have not been shared with them, resulting in privilege escalation.This vulnerability has a low impact on confidentiality, with no impact on integrity and availability of the application | |
| Title | Missing Authorization check in SAP S/4 HANA (Reprocess Bank Statement Items) | |
| Weaknesses | CWE-639 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2026-08-11T14:28:49.315Z
Reserved: 2026-07-27T17:33:40.733Z
Link: CVE-2026-66764
Updated: 2026-08-11T14:28:44.883Z
Status : Received
Published: 2026-08-11T01:17:23.120
Modified: 2026-08-11T01:17:23.120
Link: CVE-2026-66764
No data.
OpenCVE Enrichment
Updated: 2026-08-11T14:20:38Z