SAP Business One installation - version 10.0, does not perform proper authentication and authorization checks for SMB shared folder. As a result, any malicious user can read and write to the SMB shared folder. Additionally, the files in the folder can be executed or be used by the installation process leading to considerable impact on confidentiality, integrity and availability.
Metrics
Affected Vendors & Products
References
History
Sat, 28 Sep 2024 22:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-284 | |
Metrics |
ssvc
|
Sat, 28 Sep 2024 22:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | SAP Business One installation - version 10.0, does not perform proper authentication and authorization checks for SMB shared folder. As a result, any malicious user can read and write to the SMB shared folder. Additionally, the files in the folder can be executed or be used by the installation process leading to considerable impact on confidentiality, integrity and availability. | SAP Business One installation - version 10.0, does not perform proper authentication and authorization checks for SMB shared folder. As a result, any malicious user can read and write to the SMB shared folder. Additionally, the files in the folder can be executed or be used by the installation process leading to considerable impact on confidentiality, integrity and availability. |
MITRE
Status: PUBLISHED
Assigner: sap
Published: 2023-11-14T00:59:07.320Z
Updated: 2024-09-28T21:55:28.667Z
Reserved: 2023-04-27T18:29:50.455Z
Link: CVE-2023-31403
Vulnrichment
Updated: 2024-08-02T14:53:30.887Z
NVD
Status : Modified
Published: 2023-11-14T01:15:07.413
Modified: 2024-11-21T08:01:47.437
Link: CVE-2023-31403
Redhat
No data.