PT-2019-4568 · Sap · Sap Business One Mobile Android App+1
Published
2019-02-15
·
Updated
2020-08-24
·
CVE-2019-0256
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
SAP Business One version 1.2.12
SAP Business One (affected versions not specified, but Mobile Android App version 1.2.12 is known to be affected)
Description
The issue is related to the lack of protection for internal data in the SAP Business One system. Under certain conditions, an attacker can access restricted information.
Recommendations
For version 1.2.12 of the SAP Business One Mobile Android App, consider restricting access to sensitive data until a fix is available.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Sap Business One
Sap Business One Mobile Android App