Advisory
On 11.08.2026 a security relevant correction has been released by SAP SE. The manufacturer resolves an issue within SAP Data Services.
SAP Note 3739913 addresses "3739913 - [CVE-2026-44762 ] Security Misconfiguration in SAP Data Services Management Console" to prevent weak security configuration with a low risk for exploitation.
A workaround does not exist, according to SAP Security Advisory team. It is advisable to implement the correction as part of maintenance, the team suggests.
Risk specification
SAP Data Services Management Console allows an authenticated attacker to inject and execute malicious scripts within the application context, resulting in limited unauthorized access to or modification of data.
Solution
The Content Security Policy configuration has been hardened to follow security best practices.
