Show filters
14 Total Results
Displaying 11-14 of 14
Sort by:
Attacker Value
Unknown

CVE-2006-2718

Disclosure Date: June 01, 2006 (last updated October 04, 2023)
JIWA Financials 6.4.14 passes a Microsoft SQL Server account's username and password, and the name of a data source, to a Crystal Reports .rpt file, which allows remote authenticated users to execute certain standard stored procedures by referencing them in a user-written .rpt file, as demonstrated by using a stored procedure that provides the username and cleartext password of every account.
0
Attacker Value
Unknown

CVE-2002-2301

Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Lawson Financials 8.0, when configured to use a third party relational database, stores usernames and passwords in a world-readable file, which allows local users to read the passwords and log onto the database.
0
Attacker Value
Unknown

CVE-2001-0392

Disclosure Date: June 18, 2001 (last updated February 22, 2025)
Navision Financials Server 2.60 and earlier allows remote attackers to cause a denial of service by sending a null character and a long string to the server port (2407), which causes the server to crash.
0
Attacker Value
Unknown

CVE-2001-0393

Disclosure Date: June 18, 2001 (last updated February 22, 2025)
Navision Financials Server 2.0 allows remote attackers to cause a denial of service via a series of connections to the server without providing a username/password combination, which consumes the license limits.
0