low2026-08-11SAP SCMCVE-2026-58245

Hard-coded Credentials in SAP Advanced Planning and Optimization Model Mix Planning

SAP Advanced Planning and Optimization (APO — Model Mix Planning)

Our Take

Hard-coded credentials are low severity here due to limited exposure, but they are never acceptable — once the credentials are known, they remain valid until patched. Next quarterly APO maintenance window.

Vulnerability Detail

Hard-coded credentials exist in the Model Mix Planning component of SAP Advanced Planning and Optimization (APO). These embedded credentials could be discovered and used by an attacker to gain unauthorised access to the component.

Patch Action

Apply SAP Note 3763028. Verify affected versions in the official SAP Note.

Patch Info

CVSS Score

3.8

SAP Note

3763028

CVE

CVE-2026-58245

Published

2026-08-11

← All patches