#VU55669 Arbitrary file upload in SAP Business One - CVE-2021-33698
Published: August 10, 2021
SAP Business One
SAP
Description
The vulnerability allows a remote user to compromise vulnerable system.
The vulnerability exists due to insufficient validation of file during file upload in SAP Business One. A remote authenticated user can upload a malicious file and execute it on the server.
Successful exploitation of the vulnerability may allow an attacker to compromise the affected system.