CVE-2026-0501

Due to insufficient input validation in SAP S/4HANA Private Cloud and On-Premise (Financials General Ledger), an authenticated user could execute crafted SQL queries to read, modify, and delete backend database data. This leads to a high impact on the confidentiality, integrity, and availability of the application.
Configurations

No configuration.

History

No history.

Information

Published : 2026-01-13 02:15

Updated : 2026-01-13 14:03


NVD link : CVE-2026-0501

Mitre link : CVE-2026-0501

CVE.ORG link : CVE-2026-0501


JSON object : View

Products Affected

No product.

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')