B1i module of SAP Business One - version 10.0, application allows an authenticated user with deep knowledge to send crafted queries over the network to read or modify the SQL data. On successful exploitation, the attacker can cause high impact on confidentiality, integrity and availability of the application.
History

Fri, 11 Oct 2024 21:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: sap

Published: 2023-08-08T00:35:51.653Z

Updated: 2024-10-10T19:08:03.270Z

Reserved: 2023-05-24T20:41:32.835Z

Link: CVE-2023-33993

cve-icon Vulnrichment

Updated: 2024-08-02T15:54:14.328Z

cve-icon NVD

Status : Modified

Published: 2023-08-08T01:15:15.367

Modified: 2024-11-21T08:06:22.307

Link: CVE-2023-33993

cve-icon Redhat

No data.