3.5
CVSSv2

CVE-2021-42066

Published: 14/12/2021 Updated: 21/01/2022
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 4.4 | Impact Score: 3.6 | Exploitability Score: 0.7
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:P/I:N/A:N

Vulnerability Summary

SAP Business One - version 10.0, allows an admin user to view DB password in plain text over the network, which should otherwise be encrypted. For an malicious user to discover vulnerable function in-depth application knowledge is required, but once exploited the attacker may be able to completely compromise confidentiality, integrity, and availability of the application.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sap business one 10.0