A vulnerability categorized as problematic has been discovered in SAP Incentive and Commission Management up to SAP_APPL 618 . This issue affects some unknown processing. The manipulation results in missing authorization. This vulnerability is identified as CVE-2026-40134 . The attack can be executed remotely. There is not any exploit available. It is advisable to implement a patch to correct this issue.