CVE-2019-0353: Low severity sap business one license service api vulnerability
Published Sep 10, 2019
·Updated
Under certain conditions SAP Business One client (B1ONHANA, SAP-M-BO), before versions 9.2 and 9.3, allows an attacker to access information which would otherwise be restricted.
Affected Software
2 affected components
SAP Business One client=9.2
SAP Business One client=9.3
Event History
Sep 10, 2019
CVE Published
via MITRE·04:05 PM
Data Sourced
via MITRE·04:05 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-0353?
CVE-2019-0353 has a medium severity rating due to the potential unauthorized access to restricted information.
2
How do I fix CVE-2019-0353?
To fix CVE-2019-0353, upgrade the SAP Business One client to version 9.4 or later, as this vulnerability is addressed in these versions.
3
What are the affected versions for CVE-2019-0353?
The affected versions for CVE-2019-0353 are SAP Business One client versions 9.2 and 9.3.
4
What type of vulnerability is CVE-2019-0353?
CVE-2019-0353 is an unauthorized access vulnerability that allows sensitive information disclosure.
5
Can CVE-2019-0353 be exploited remotely?
Yes, CVE-2019-0353 can potentially be exploited remotely depending on the specific deployment and configuration of SAP Business One.