Fixlet Site - PatchesforWindows(German) Current Version: 260 Published: Wed, 05 Nov 2008 20:50:25 GMT New Fixlets: ============ *************************************************************** Title: MS04-017: Vulnerability in Crystal Reports Web Viewer Could Allow Information Disclosure and Denial of Service - Microsoft Business Solutions CRM 1.2 (German) Severity: Moderate Fixlet ID: 401705 Fixlet Link: http://support.businessobjects.com/fix/hot/critical/ms_critical_updates.asp Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS04-017.mspx Fixlet Description: Microsoft has released a patch to resolve a vulnerability in Crystal Reports and Crystal Enterprise Web viewers, which are components of Microsoft Business Solutions CRM 1.2. An attacker who successfully exploited the vulnerability could retrieve and delete files through the Crystal Reports and Crystal Enterprise Web viewers on an affected system. The number of files that are impacted by this vulnerability would depend on the security context of the affected component that is used by the Crystal Web viewer. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities.