Database Query Execution Vulnerability in SAP Business One
CVE-2021-33688
4.3MEDIUM
What is CVE-2021-33688?
SAP Business One contains a vulnerability that allows an attacker with existing business privileges to craft and execute specific database queries. This can result in exposing sensitive information from the back-end database. However, due to certain framework restrictions, the attacker may only gain access to a limited set of data.
Affected Version(s)
SAP Business One < 10.0