Beveiligingsadvies

CVE-2023-4537

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-02-15 08:27:07
Laatst bijgewerkt 2024-10-10 15:35:58
Toegewezen door CERT-PL
CVSS-score 7.4
Status PUBLISHED

Beschrijving

Comarch ERP XL client is vulnerable to MS SQL protocol downgrade request from a server side, what could lead to an unencrypted communication vulnerable to data interception and modification. This issue affects ERP XL: from 2020.2.2 through 2023.2.