5.3 Medium
CVSS3
Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
NONE
Availability Impact
NONE
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
5.2 Medium
AI Score
Confidence
High
0.0005 Low
EPSS
Percentile
18.3%
SAP Business One (Service Layer) - version 10.0, allows an authenticated attacker with deep knowledge perform certain operation to access unintended data over the network which could lead to high impact on confidentiality with no impact on integrity and availability of the application
CPE | Name | Operator | Version |
---|---|---|---|
sap:business_one | sap business one | eq | 10.0 |
[
{
"defaultStatus": "unaffected",
"product": "SAP Business One (Service Layer)",
"vendor": "SAP_SE",
"versions": [
{
"status": "affected",
"version": "10.0"
}
]
}
]
5.3 Medium
CVSS3
Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
NONE
Availability Impact
NONE
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
5.2 Medium
AI Score
Confidence
High
0.0005 Low
EPSS
Percentile
18.3%