Insufficient File Path Validation in SAP Manufacturing Integration and Intelligence
CVE-2026-44763

7.6HIGH

Key Information:

Vendor

SAP

Vendor
CVE Published:
11 August 2026

What is CVE-2026-44763?

SAP Manufacturing Integration and Intelligence is susceptible to a serious vulnerability stemming from inadequate file path validation. This weakness allows a privileged attacker to exploit the system by providing specially crafted input. However, successful exploitation requires a legitimate user to access the compromised content, relying on external conditions that are beyond the attacker's control. If exploited, this flaw could permit unauthorized files to be written outside the designated directories, severely impacting the confidentiality, integrity, and availability of the system. It is critical for users to be aware of this issue and take necessary precautions.

Affected Version(s)

SAP Manufacturing Integration and Intelligence XMII 15.4

SAP Manufacturing Integration and Intelligence 15.5

References

CVSS V3.1

Score:
7.6
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.