high2026-08-11SAP Manufacturing Integration and IntelligenceCVE-2026-44763

Directory Traversal in SAP Manufacturing Integration and Intelligence

SAP Manufacturing Integration and Intelligence (MII)

Our Take

MII note three of six this month. Bundle all six MII notes into a single maintenance window — this is unavoidable at this point.

Vulnerability Detail

A directory traversal vulnerability in SAP Manufacturing Integration and Intelligence allows an authenticated attacker to manipulate file path parameters to access files and directories outside the intended scope, potentially exposing configuration files, logs, or sensitive plant integration data.

Patch Action

Apply SAP Note 3759854. Bundle with the two critical MII notes (3765948, 3758900) in a single MII maintenance window.

Patch Info

CVSS Score

7.6

SAP Note

3759854

CVE

CVE-2026-44763

Published

2026-08-11

← All patches