CVE-2026-0496
Severity CVSS v4.0:
Pending analysis
Type:
CWE-434
Unrestricted Upload of File with Dangerous Type
Publication date:
13/01/2026
Last modified:
13/01/2026
Description
SAP Fiori App Intercompany Balance Reconciliation allows an attacker with high privileges to upload any file (including script files) without proper file format validation. This has low impact on confidentiality, integrity and availability of the application.
Impact
Base Score 3.x
6.60
Severity 3.x
MEDIUM



