High severity7.5NVD Advisory· Published Sep 11, 2018· Updated Jun 17, 2026
CVE-2018-2458
CVE-2018-2458
Description
Under certain conditions, Crystal Report using SAP Business One, versions 9.2 and 9.3, connection type allows an attacker to access information which would otherwise be restricted.
Affected products
4cpe:2.3:a:sap:business_one:9.2:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:sap:business_one:9.2:*:*:*:*:*:*:*
- cpe:2.3:a:sap:business_one:9.3:*:*:*:*:*:*:*
- Range: 9.2, 9.3
- Range: 9.2
Patches
Vulnerability mechanics
References
3- www.securityfocus.com/bid/105307nvdThird Party AdvisoryVDB Entry
- launchpad.support.sap.comnvdPermissions RequiredVendor Advisory
- wiki.scn.sap.com/wiki/pages/viewpage.actionnvdVendor Advisory
News mentions
0No linked articles in our index yet.