CVE-2021-33686: Medium severity sap business one on hana vulnerability
Published Sep 14, 2021
·Updated
Under certain conditions, SAP Business One version - 10.0, allows an unauthorized attacker to get access to some encrypted sensitive information, but does not have control over kind or degree.
Affected Software
1 affected component
SAP Business One=10.0
Event History
Sep 14, 2021
CVE Published
via MITRE·11:24 AM
Data Sourced
via MITRE·11:24 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-33686.
2
What is the affected software version?
The affected software version is SAP Business One 10.0.
3
What is the severity of CVE-2021-33686?
The severity of CVE-2021-33686 is medium, with a CVSS score of 5.3.
4
How can an unauthorized attacker exploit CVE-2021-33686?
Under certain conditions, an unauthorized attacker can gain access to some encrypted sensitive information in SAP Business One 10.0.
5
Are there any fixes or patches available for CVE-2021-33686?
For information on fixes or patches for CVE-2021-33686, please refer to the SAP support notes at https://launchpad.support.sap.com/#/notes/3070138.