PT-2026-24165 · Sap · Sap Supply Chain Management

Published

2026-03-10

·

Updated

2026-03-11

·

CVE-2026-27689

CVSS v3.1

7.7

High

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions SAP Supply Chain Management (affected versions not specified)
Description An authenticated attacker with regular user privileges and network access can cause a denial-of-service condition by repeatedly invoking a remote-enabled function module with an excessively large loop-control parameter. This triggers prolonged loop execution, consuming excessive system resources and potentially rendering the system unavailable. The issue impacts availability, while confidentiality and integrity remain unaffected.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Weakness Enumeration

Related Identifiers

CVE-2026-27689

Affected Products

Sap Supply Chain Management