SAP HANA Database (user self service tools) allows an unauthenticated user to send specially crafted requests that produce distinguishable responses, enabling enumeration of valid user accounts and email addresses. Successful exploitation could allow the attacker to enumerate valid user accounts, resulting in low impact on confidentiality, with no impact on integrity and availability of the application.
References
Configurations
No configuration.
History
14 Jul 2026, 01:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-07-14 01:16
Updated : 2026-07-14 16:46
NVD link : CVE-2026-44753
Mitre link : CVE-2026-44753
CVE.ORG link : CVE-2026-44753
JSON object : View
Products Affected
No product.
CWE
CWE-204
Observable Response Discrepancy
