An issue in Horizon Business Services Inc. Caterease 16.0.1.1663 through 24.0.1.2405 and possibly later versions, allows a remote attacker to perform unauthorized access using known operating system credentials due to hardcoded SQL user credentials in the client application.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| http://caterease.com |
|
| http://horizon.com |
|
| https://vuldb.com/?id.273369 |
|
History
Tue, 13 May 2025 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:horizoncloud:caterease:*:*:*:*:*:*:*:* |
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T18:25:07.861Z
Reserved: 2024-06-21T00:00:00
Link: CVE-2024-38885
Updated: 2024-08-03T18:24:12.081Z
Status : Analyzed
Published: 2024-08-02T18:16:19.570
Modified: 2025-05-13T14:11:24.487
Link: CVE-2024-38885
No data.
OpenCVE Enrichment
No data.
Weaknesses