CVE-2023-31403
CVSS V2 None
CVSS V3 None
Description
SAP Business One installation - version 10.0, does not perform proper authentication and authorization checks for SMB shared folder. As a result, any malicious user can read and write to the SMB shared folder. Additionally, the files in the folder can be executed or be used by the installation process leading to considerable impact on confidentiality, integrity and availability.
Overview
- CVE ID
- CVE-2023-31403
- Assigner
- sap
- Vulnerability Status
- PUBLISHED
- Published Version
- 2023-11-14T00:59:07.320Z
- Last Modified Date
- 2023-11-14T00:59:07.320Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://me.sap.com/notes/3355658 | |
https://www.sap.com/documents/2022/02/fa865ea4-167e-0010-bca6-c68f7e60039b.html |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-31403 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-31403 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-06-24 21:31:56 | Added to TrackCVE |