CVE-2023-0016
Summary
| CVE | CVE-2023-0016 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-01-10 04:15:00 UTC |
| Updated | 2023-01-18 20:28:00 UTC |
| Description | SAP BPC MS 10.0 - version 810, allows an unauthorized attacker to execute crafted database queries. The exploitation of this issue could lead to SQL injection vulnerability and could allow an attacker to access, modify, and/or delete data from the backend database. |
Risk And Classification
Problem Types: CWE-89
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Sap | Business Planning And Consolidation | 800 | All | All | All |
| Application | Sap | Business Planning And Consolidation | 810 | All | All | All |
| Application | Sap | Business Planning And Consolidationt | 800 | All | All | All |
| Application | Sap | Business Planning And Consolidationt | 810 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Access Denied | MISC | www.sap.com | |
| launchpad.support.sap.com | MISC | launchpad.support.sap.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.