CVE-2026-27673Disclosure

LOWCVSS 4.9 · MEDIUM

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Due to a missing authorization check, SAP S/4HANA (Private Cloud and On-Premise) allows an authenticated user to delete files on the operating system and gain unauthorized control over file operations which could leads to no impact on Confidentiality, Low impact on Integrity and Availability of the application.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-862

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • 2 total mentions across 1 day

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-04-14: 2Technical Details · 2026-04-14: 104-14
Signal classification2 categories
Disclosure
150.0%
General
150.0%
Referenced assets2 URLs
Full discourse2 posts
  • CVEarity@CVEarity
    General

    ⚡ New CVE Alert: CVE-2026-27673 📊 Severity: 4.9 🚨 Risk Level: Medium 🧩 Affects: Sap Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-27673 #CVE-2026-27673 #CVE #Medium #Sap #CyberSecurity #InfoSec https://t.co/FMrkDnul4U

    Post summary

    A brief advisory announcing CVE-2026-27673, a medium‑severity issue affecting SAP systems, with a reference to the NIST NVD entry.

    0000028
    137 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-27673 Due to a missing authorization check, SAP S/4HANA (Private Cloud and On-Premise) allows an authenticated user to delete files on the operating system and gain unautho… https://www.cve.org/CVERecord?id=CVE-2026-27673

    Post summary

    The text announces CVE-2026-27673, describing a missing authorization check in SAP S/4HANA that enables authenticated users to delete OS files and obtain unauthorized privileges, with no indication of PoC, exploit, patch, or active attacks.

    00000109
    57.2K followersView on X

Explore more