CVE-2018-2458: High severity sap business one on hana vulnerability
Under certain conditions, Crystal Report using SAP Business One, versions 9.2 and 9.3, connection type allows an attacker to access information which would otherwise be restricted.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-2458?
CVE-2018-2458 is a vulnerability in Crystal Report using SAP Business One versions 9.2 and 9.3 that allows an attacker to access restricted information.
What is the severity of CVE-2018-2458?
The severity of CVE-2018-2458 is high with a CVSS score of 7.5.
What is affected by CVE-2018-2458?
Crystal Report using SAP Business One versions 9.2 and 9.3 are affected.
How can an attacker exploit CVE-2018-2458?
An attacker can exploit CVE-2018-2458 by exploiting the vulnerable connection type in Crystal Report.
Are there any references for CVE-2018-2458?
Yes, you can find more information about CVE-2018-2458 at the following references: [1] http://www.securityfocus.com/bid/105307 [2] https://launchpad.support.sap.com/#/notes/2670284 [3] https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=499356993