Under certain conditions, SAP Business One version - 10.0, allows an unauthorized attacker to get access to some encrypted sensitive information, but does not have control over kind or degree.
https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=585106405