CVE-2026-44758

Summary

SAP Manufacturing Integration and Intelligence (MII) allows an attacker with high privileges to submit specially crafted input to certain affected functionality, which is processed without sufficient validation. Successful exploitation could allow the attacker to execute arbitrary commands on the underlying operating system, resulting in high impact on confidentiality, integrity, and availability of the application.

Affected Software

VendorProductVersion RangeStatus
SAP_SESAP Manufacturing Integration and IntelligenceXMII 15.4affected
SAP_SESAP Manufacturing Integration and Intelligence15.5affected

Weaknesses

  • CWE-94: CWE-94: Improper Control of Generation of Code

References