CVE-2023-4537

Publication date

2024-02-15 08:27:07

Family

CERT-PL

State

PUBLISHED

Description

Comarch ERP XL client is vulnerable to MS SQL protocol downgrade request from a server side, what could lead to an unencrypted communication vulnerable to data interception and modification. This issue affects ERP XL: from 2020.2.2 through 2023.2.