CVE-2014-5505: SAP Crystal Reports

Medium severity, CVSS 6.8. EPSS: 3.8% chance of exploitation in the next 30 days.

Stack-based buffer overflow in SAP Crystal Reports allows remote attackers to execute arbitrary code via a crafted data source string in an RPT file.

Affected products

  • SAP Crystal Reports: affected versions not specified

Published 2014-09-04. Last modified 2026-06-17.