Vulnerability Details CVE-2004-1981
The web interface for Crystal Reports allows remote attackers to cause a denial of service (disk exhaustion) by repeatedly requesting reports without retrieving the associated image files, which are not cleared from the image file folder.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 69.9%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2004-1981
-
cpe:2.3:a:businessobjects:crystal_enterprise:10
-
cpe:2.3:a:businessobjects:crystal_enterprise:9
-
cpe:2.3:a:businessobjects:crystal_reports:10
-
cpe:2.3:a:businessobjects:crystal_reports:9