NA

CVE-2022-41397

Published: 28/04/2023 Updated: 05/05/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

The optional Web Screens and Global Search features for Sage 300 through version 2022 use a hard-coded 40-byte blowfish key ("LandlordPassKey") to encrypt and decrypt secrets stored in configuration files and in database tables.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sage sage 300