Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-0016


SAP BPC MS 10.0 - version 810, allows an unauthorized attacker to execute crafted database queries. The exploitation of this issue could lead to SQL injection vulnerability and could allow an attacker to access, modify, and/or delete data from the backend database.


Published

2023-01-10T04:15:09.797

Last Modified

2024-11-21T07:36:23.980

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.9 (CRITICAL)

Weaknesses
  • Type: Secondary
    CWE-89
  • Type: Primary
    CWE-89

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application sap business_planning_and_consolidation 800 Yes
Application sap business_planning_and_consolidation 810 Yes

References