SAP Security Note 2835226

 

Advisories for S4CORE 109

Below you can find all Security Advisories that related to your search term.

Note Component Description CVSS Severity Patchday Initially released on Category Affected system type Valid for
3625683 FI-FIO-AR-PAY [CVE-2025-42939] Missing Authorization Check in SAP S/4HANA (Manage Processing Rules - For Bank Statements) 4.3 Medium 2025-10 2025/10/14 Program error ABAP S4CORE 104 S4CORE 105 S4CORE 106 S4CORE 107 S4CORE 108 S4CORE 109
3678417 CA-DMS-OP [CVE-2026-0505] Multiple vulnerabilities in BSP Applications of SAP Document Management System 6.1 Medium 2026-02 2026/02/10 Program error ABAP EA-APPL 600 EA-APPL 602 EA-APPL 603 EA-APPL 604 EA-APPL 605 EA-APPL 606 EA-APPL 617 S4CORE 102 S4CORE 103 S4CORE 104 S4CORE 105 S4CORE 106 S4CORE 107 S4CORE 108 S4CORE 109 SAP_APPL 618
3616863 CA-DMS [CVE-2025-42934] CRLF Injection vulnerability in SAP S/4HANA (Supplier invoice) 4.3 Medium 2025-08 2025/08/12 Program error ABAP S4CORE 102 S4CORE 103 S4CORE 104 S4CORE 105 S4CORE 106 S4CORE 107 S4CORE 108 S4CORE 109
3672151 FI-GL-GL-G [CVE-2025-42876] Missing Authorization Check in SAP S/4 HANA Private Cloud (Financials General Ledger) 7.1 High 2025-12 2025/12/09 Program error ABAP S4CORE 104 S4CORE 105 S4CORE 106 S4CORE 107 S4CORE 108 S4CORE 109
3681523 EHS-SAF [CVE-2026-0503] Missing Authorization check in SAP ERP Central Component and SAP S/4HANA (SAP EHS Management) 6.4 Medium 2026-01 2026/01/13 Program error ABAP EA-APPL 605 EA-APPL 606 EA-APPL 617 S4CORE 102 S4CORE 103 S4CORE 104 S4CORE 105 S4CORE 106 S4CORE 107 S4CORE 108 S4CORE 109 SAP_APPL 618
3677111 PLM-PPM-PDN [CVE-2026-0497] Missing Authorization check in Business Server Pages Application (Product Designer Web UI) 4.3 Medium 2026-01 2026/01/13 Program error ABAP EA-APPL 600 EA-APPL 602 EA-APPL 603 EA-APPL 604 EA-APPL 605 EA-APPL 606 EA-APPL 617 S4CORE 102 S4CORE 103 S4CORE 104 S4CORE 105 S4CORE 106 S4CORE 107 S4CORE 108 S4CORE 109 SAP_APPL 618
3694242 CA-DT-ANA [CVE-2026-0498] Code Injection vulnerability in SAP S/4HANA (Private Cloud and On-Premise) 9.1 Hot News 2026-01 2026/01/13 Program error ABAP S4CORE 102 S4CORE 103 S4CORE 104 S4CORE 105 S4CORE 106 S4CORE 107 S4CORE 108 S4CORE 109
3687749 FI-GL-GL-G [CVE-2026-0501] SQL Injection Vulnerability in SAP S/4HANA Private Cloud and On-Premise (Financials – General Ledger) 9.9 Hot News 2026-01 2026/01/13 Program error ABAP S4CORE 102 S4CORE 103 S4CORE 104 S4CORE 105 S4CORE 106 S4CORE 107 S4CORE 108 S4CORE 109
3655229 FI-LOC-FI-RU [CVE-2026-0493] Cross-Site Request Forgery (CSRF) vulnerability in SAP Fiori App (Intercompany Balance Reconciliation) 4.3 Medium 2026-01 2026/01/13 Correction of legal function ABAP S4CORE 105 S4CORE 106 S4CORE 107 S4CORE 108 S4CORE 109 UIAPFI70 500 UIAPFI70 600 UIAPFI70 700 UIAPFI70 800 UIAPFI70 900 UIAPFI70 901 UIAPFI70 902 UIS4H 109