CVEs (3)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
4Bea Borland SoftwareBusinessobjects+1 more9Business Solutions Crm Crystal EnterpriseCrystal Enterprise Java Sdk+6 moreApr 16, 2026 Aug 6, 2004 N/A· v4 N/A· v3 7.5 HIGH· v2 Directory traversal vulnerability in the web viewers for Business Objects Crystal Reports 9 and 10, and Crystal Enterprise 9 or 10, as used in Visual Studio .NET 2003 and Outlook 2003 with Business Contact Manager, Micro...Show more |
1Businessobjects 2Crystal Enterprise Crystal ReportsApr 16, 2026 May 2, 2004 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The web interface for Crystal Reports allows remote attackers to cause a denial of service (disk exhaustion) by repeatedly requesting reports without retrieving the associated image files, which are not cleared from the...Show more |
Crystal Reports, when displaying data for a password protected database using HTML pages, embeds the username and password in cleartext in the HTML page and the URL, which allows remote attackers to obtain passwords. |