505
VMScore

CVE-2019-0285

Published: 10/04/2019 Updated: 24/08/2020
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The .NET SDK WebForm Viewer in SAP Crystal Reports for Visual Studio (fixed in version 2010) discloses sensitive database information including credentials which can be misused by the attacker.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sap crystal reports 2010

Exploits

# Exploit Title: [Sensitive Information Disclosure in SAP Crystal Reports] # Date: [2019-04-10] # Exploit Author: [Mohamed MFouad - From SecureMisr Company] # Vendor Homepage: [wikiscnsapcom/wiki/pages/viewpageaction?pageId=517899114] # Version: [SAP Crystal Reports for Visual Studio, Version - 2010] (REQUIRED) # Tested on: [Windows 10 ...
SAP Crystal Reports suffers from an information disclosure vulnerability ...