CVE-2024-4995
Severity CVSS v4.0:
CRITICAL
Type:
Unavailable / Other
Publication date:
18/12/2024
Last modified:
03/10/2025
Description
Wapro ERP Desktop is vulnerable to MS SQL protocol downgrade request from a server side, what could lead to an unencrypted communication vulnerable to data interception and modification. This issue affects Wapro ERP Desktop versions before 9.00.0.
Impact
Base Score 4.0
9.10
Severity 4.0
CRITICAL
Base Score 3.x
9.80
Severity 3.x
CRITICAL



