CVE-2018-2458

Description

Under certain conditions, Crystal Report using SAP Business One, versions 9.2 and 9.3, connection type allows an attacker to access information which would otherwise be restricted.

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS Score
Exploitation Probability
0.347

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2018-2410,CVE-2018-2458 are affected in SAP Business One (Service Layer) 9.2Windows
Vulnerabilities CVE-2018-2410,CVE-2018-2458 are affected in SAP Business One (Service Layer) 9.3Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234