7.5
CVE-2018-2458
- EPSS 1.73%
- Veröffentlicht 11.09.2018 15:29:01
- Zuletzt bearbeitet 21.11.2024 04:03:50
- Erkennungen
Under certain conditions, Crystal Report using SAP Business One, versions 9.2 and 9.3, connection type allows an attacker to access information which would otherwise be restricted.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
SAP ≫ Business One Version 9.2
SAP ≫ Business One Version 9.3
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.73% | 0.746 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.5 | 3.9 | 3.6 |
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
|
| NIST | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=499356993
http://www.securityfocus.com/bid/105307
https://launchpad.support.sap.com/#/notes/2670284