← Back to browse · API

CVE-2023-0016

Severity
CRITICAL
CVSS
9.9
EPSS
0.00616
Risk score
39.82
CISA KEV
No
PoC
No
Published
2023-01-10
Modified
2025-04-09
First seen
2026-08-07
Aliases
EUVD-2023-12121, GHSA-QV4H-7VX6-66CJ
Products
SAP:SAP BPC MS 10.0 800, SAP:SAP BPC MS 10.0 810
Sources
euvd EUVD-2023-12121

Description

SAP BPC MS 10.0 - version 810, allows an unauthorized attacker to execute crafted database queries. The exploitation of this issue could lead to SQL injection vulnerability and could allow an attacker to access, modify, and/or delete data from the backend database.

References