SAP

Business One

33 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.3%
  • Published 14.09.2021 12:15:09
  • Last modified 21.11.2024 06:09:22

SAP Business One allows an attacker with business privileges to execute crafted database queries, exposing the back-end database. Due to framework restrictions, only some information can be obtained.

  • EPSS 0.2%
  • Published 14.09.2021 12:15:09
  • Last modified 21.11.2024 06:09:21

Under certain conditions, SAP Business One version - 10.0, allows an unauthorized attacker to get access to some encrypted sensitive information, but does not have control over kind or degree.

  • EPSS 0.33%
  • Published 14.09.2021 12:15:09
  • Last modified 21.11.2024 06:09:21

SAP Business One version - 10.0 allows low-level authorized attacker to traverse the file system to access files or directories that are outside of the restricted directory. A successful attack allows access to high level sensitive data

  • EPSS 0.04%
  • Published 09.06.2021 14:15:09
  • Last modified 21.11.2024 06:09:18

Under certain conditions, the installation of SAP Business One, version - 10.0, discloses sensitive information on the file system allowing an attacker to access information which would otherwise be restricted.

  • EPSS 0.03%
  • Published 11.05.2021 15:15:08
  • Last modified 21.11.2024 05:58:18

Under certain conditions, SAP Business One Hana Chef Cookbook, versions - 8.82, 9.0, 9.1, 9.2, 9.3, 10.0, used to install SAP Business One for SAP HANA, allows an attacker to exploit an insecure temporary backup path and to access information which w...

  • EPSS 0.04%
  • Published 11.05.2021 15:15:08
  • Last modified 21.11.2024 05:58:18

SAP Business One Hana Chef Cookbook, versions - 8.82, 9.0, 9.1, 9.2, 9.3, 10.0, used to install SAP Business One on SAP HANA, allows an attacker to inject code that can be executed by the application. An attacker could thereby control the behaviour o...

  • EPSS 0.03%
  • Published 10.06.2020 13:15:17
  • Last modified 21.11.2024 05:35:21

Under certain conditions SAP Business One (Backup service), versions 9.3, 10.0, allows an attacker with admin permissions to view SYSTEM user password in clear text, leading to Information Disclosure.

  • EPSS 0.08%
  • Published 15.02.2019 18:29:00
  • Last modified 21.11.2024 04:16:35

Under certain conditions SAP Business One Mobile Android App, version 1.2.12, allows an attacker to access information which would otherwise be restricted.

  • EPSS 0.14%
  • Published 11.09.2018 15:29:01
  • Last modified 21.11.2024 04:03:51

SAP Business One Android application, version 1.2, does not verify the certificate properly for HTTPS connection. This allows attacker to do MITM attack.

  • EPSS 0.37%
  • Published 11.09.2018 15:29:01
  • Last modified 21.11.2024 04:03:50

Under certain conditions, Crystal Report using SAP Business One, versions 9.2 and 9.3, connection type allows an attacker to access information which would otherwise be restricted.