Security Advisory

CVE-2023-4537

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-02-15 08:27:07
Last updated 2024-10-10 15:35:58
Assigner CERT-PL
State PUBLISHED

Description

Comarch ERP XL client is vulnerable to MS SQL protocol downgrade request from a server side, what could lead to an unencrypted communication vulnerable to data interception and modification. This issue affects ERP XL: from 2020.2.2 through 2023.2.