PT-2009-5653 · Sap+1 · Sap Crystal Reports Server+1

Published

2009-09-24

·

Updated

2009-09-28

·

CVE-2009-3346

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions SAP Crystal Reports Server 2008 (affected versions not specified)
Description The issue allows remote attackers to execute arbitrary code. It has been demonstrated by a certain module in VulnDisco Pack Professional versions 8.3 through 8.11. However, as of 20090917, this disclosure has no actionable information.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2009-3346

Affected Products

Sap Crystal Reports Server
Vulndisco Pack Professional