CVE-2021-33688
SAP Business One allows an attacker with business privileges to execute crafted database queries, exposing the back-end database. Due to framework restrictions, only some information can be obtained.
Date published : 2021-09-14
https://launchpad.support.sap.com/#/notes/3069882
https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=585106405