Description
An issue in Horizon Business Services Inc. Caterease 16.0.1.1663 through 24.0.1.2405 and possibly later versions, allows a remote attacker to perform unauthorized access using known operating system credentials due to hardcoded SQL user credentials in the client application.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
| Link | Providers |
|---|---|
| http://caterease.com |
|
| http://horizon.com |
|
| https://vuldb.com/?id.273369 |
|
History
Tue, 13 May 2025 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:horizoncloud:caterease:*:*:*:*:*:*:*:* |
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T18:25:07.861Z
Reserved: 2024-06-21T00:00:00.000Z
Link: CVE-2024-38885
Updated: 2024-08-03T18:24:12.081Z
Status : Analyzed
Published: 2024-08-02T18:16:19.570
Modified: 2025-05-13T14:11:24.487
Link: CVE-2024-38885
No data.
OpenCVE Enrichment
No data.
Weaknesses