SAP Financial Consolidation allows an authenticated attacker to disconnect other users by terminating their sessions temporarily preventing access. However, the application itself cannot be compromised resulting in a low impact on availability. There is no impact on confidentiality and integrity of the data
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 12 May 2026 03:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SAP Financial Consolidation allows an authenticated attacker to disconnect other users by terminating their sessions temporarily preventing access. However, the application itself cannot be compromised resulting in a low impact on availability. There is no impact on confidentiality and integrity of the data | |
| Title | Denial of service (DoS) in SAP Financial Consolidation | |
| Weaknesses | CWE-404 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2026-05-12T02:21:51.132Z
Reserved: 2026-04-09T17:29:44.663Z
Link: CVE-2026-40136
No data.
Status : Received
Published: 2026-05-12T03:16:12.560
Modified: 2026-05-12T03:16:12.560
Link: CVE-2026-40136
No data.
OpenCVE Enrichment
Updated: 2026-05-12T04:30:07Z
Weaknesses