CVE-2019-0276: SAP Banking Services From SAP
High severity, CVSS 8.8. EPSS: 1.7% chance of exploitation in the next 30 days.
Banking services from SAP 9.0 (FSAPPL version 5) and SAP S/4HANA Financial Products Subledger (S4FPSL, version 1) performs an inadequate authorization check for an authenticated user, potentially resulting in escalation of privileges.
Affected products
- SAP Banking Services From SAP: version 9.0 only
- SAP s/4hana Financial Products Subledger: version 1.0 only
Published 2019-03-12. Last modified 2026-06-17.