CVE-2021-33688: SQL Injection
SAP Business One allows an attacker with business privileges to execute crafted database queries, exposing the back-end database. Due to framework restrictions, only some information can be obtained.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-33688?
CVE-2021-33688 is a vulnerability in SAP Business One that allows an attacker with business privileges to execute crafted database queries, exposing the back-end database.
What is the severity of CVE-2021-33688?
The severity of CVE-2021-33688 is medium with a severity value of 4.3.
How does CVE-2021-33688 affect SAP Business One?
CVE-2021-33688 affects SAP Business One by allowing an attacker with business privileges to execute crafted database queries.
How can an attacker exploit CVE-2021-33688?
An attacker with business privileges can exploit CVE-2021-33688 by executing crafted database queries.
Are there any references for CVE-2021-33688?
Yes, you can find references for CVE-2021-33688 at the following links: [Link 1](https://launchpad.support.sap.com/#/notes/3069882) and [Link 2](https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=585106405).