SAP Enable Now, before version 1911, leaks information about the existence of a particular user which can be used to construct a list of users, leading to a user enumeration vulnerability and Information Disclosure.
https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=533660397