Home/Product/sap crystal reports
Product

sap crystal reports

10 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2020-6208
all versions
SAP Business Objects Business Intelligence Platform (Crystal Reports), versions- 4.1, 4.2, allows an attacker with basic authoriza
8.2HIGH
CVE-2019-0285
all versions
The .NET SDK WebForm Viewer in SAP Crystal Reports for Visual Studio (fixed in version 2010) discloses sensitive database informat
9.8CRITICAL
CVE-2018-2427
all versions
SAP BusinessObjects Business Intelligence Suite, versions 4.10 and 4.20, and SAP Crystal Reports (version for Visual Studio .NET,
8.8HIGH
CVE-2014-5506
all versions
Double free vulnerability in SAP Crystal Reports allows remote attackers to execute arbitrary code via crafted connection string r
CVE-2014-5505
all versions
Stack-based buffer overflow in SAP Crystal Reports allows remote attackers to execute arbitrary code via a crafted data source str
CVE-2010-2590
all versions
Heap-based buffer overflow in the CrystalReports12.CrystalPrintControl.1 ActiveX control in PrintControl.dll 12.3.2.753 in SAP Cry
CVE-2010-3032
all versions
Integer overflow in the OBGIOPServerWorker::extractHeader function in the ebus-3-3-2-6.dll module in SAP Crystal Reports 2008 allo
CVE-2004-0204
all versions
Directory traversal vulnerability in the web viewers for Business Objects Crystal Reports 9 and 10, and Crystal Enterprise 9 or 10
CVE-2004-1981
all versions
The web interface for Crystal Reports allows remote attackers to cause a denial of service (disk exhaustion) by repeatedly request
CVE-2001-1464
all versions
Crystal Reports, when displaying data for a password protected database using HTML pages, embeds the username and password in clea
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin