CVE-2021-27614

SAP Business One Hana Chef Cookbook, versions - 8.82, 9.0, 9.1, 9.2, 9.3, 10.0, used to install SAP Business One on SAP HANA, allows an attacker to inject code that can be executed by the application. An attacker could thereby control the behaviour of the application thereby highly impacting the integrity and availability of the application.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:sap:business-one-hana-chef-cookbook:0.1.6:*:*:*:*:*:*:*
cpe:2.3:a:sap:business-one-hana-chef-cookbook:0.1.7:*:*:*:*:*:*:*
cpe:2.3:a:sap:business-one-hana-chef-cookbook:0.1.19:*:*:*:*:*:*:*
cpe:2.3:a:sap:business_one:8.82:*:*:*:*:*:*:*
cpe:2.3:a:sap:business_one:9.0:*:*:*:*:*:*:*
cpe:2.3:a:sap:business_one:9.1:*:*:*:*:*:*:*
cpe:2.3:a:sap:business_one:9.2:*:*:*:*:*:*:*
cpe:2.3:a:sap:business_one:9.3:*:*:*:*:*:*:*
cpe:2.3:a:sap:business_one:10.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2021-05-11 15:15

Updated : 2024-02-28 18:28


NVD link : CVE-2021-27614

Mitre link : CVE-2021-27614

CVE.ORG link : CVE-2021-27614


JSON object : View

Products Affected

sap

  • business_one
  • business-one-hana-chef-cookbook
CWE
CWE-74

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')