CVE-2022-28771
12.07.2022, 21:15
Due to missing authentication check, SAP Business one License service API - version 10.0 allows an unauthenticated attacker to send malicious http requests over the network. On successful exploitation, an attacker can break the whole application making it inaccessible.Enginsight
Vendor | Product | Version |
---|---|---|
sap | business_one_license_service_api | 10.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration