Critical severity9.1NVD Advisory· Published Jul 10, 2018· Updated Jun 17, 2026
CVE-2018-2437
CVE-2018-2437
Description
The SAP Internet Graphics Service (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, allows an attacker to externally trigger IGS command executions which can lead to: disclosure of information and malicious file insertion or modification.
Affected products
7cpe:2.3:a:sap:internet_graphics_server:7.20:*:*:*:*:*:*:*+ 6 more
- cpe:2.3:a:sap:internet_graphics_server:7.20:*:*:*:*:*:*:*
- cpe:2.3:a:sap:internet_graphics_server:7.20ext:*:*:*:*:*:*:*
- cpe:2.3:a:sap:internet_graphics_server:7.45:*:*:*:*:*:*:*
- cpe:2.3:a:sap:internet_graphics_server:7.49:*:*:*:*:*:*:*
- cpe:2.3:a:sap:internet_graphics_server:7.53:*:*:*:*:*:*:*
- (no CPE)range: 7.20, 7.20EXT, 7.45, 7.49, 7.53
- (no CPE)range: = 7.20
Patches
Vulnerability mechanics
References
3- www.securityfocus.com/bid/104705nvdThird Party AdvisoryVDB Entry
- launchpad.support.sap.comnvdPermissions RequiredVendor Advisory
- wiki.scn.sap.com/wiki/pages/viewpage.actionnvdVendor Advisory
News mentions
0No linked articles in our index yet.