CVE Vulnerabilities

CVE-2023-4537

Improper Handling of Exceptional Conditions

Published: Feb 15, 2024 | Modified: Oct 10, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Comarch ERP XL client is vulnerable to MS SQL protocol downgrade request from a server side, what could lead to an unencrypted communication vulnerable to data interception and modification.

This issue affects ERP XL: from 2020.2.2 through 2023.2.

Weakness

The product does not handle or incorrectly handles an exceptional condition.

References