Comarch ERP XL是波兰Comarch公司的一款企业资源规划(ERP)软件。 Comarch ERP XL 2020.2.2版本至2023.2版本存在安全漏洞,该漏洞源于容易受到来自服务器端的MS SQL协议降级请求的影响,可能导致未加密的通信容易受到数据拦截和修改。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-4539 | 7.5 HIGH | Hardcoded password in Comarch ERP XL |
| CVE-2023-4538 | 6.2 MEDIUM | Shared Key in Comarch ERP XL |
No comments yet