cbcvebase.
CVE-2018-2420
published 2018-05-09

CVE-2018-2420: SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, allows an attacker to upload any file (including script files) without proper file format…

critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, allows an attacker to upload any file (including script files) without proper file format validation.

Affected

10 ranges
VendorProductVersion rangeFixed in
sapinternet_graphics_server
sapinternet_graphics_server
sapinternet_graphics_server
sapinternet_graphics_server
sapinternet_graphics_server
sap_sesap_internet_graphics_server
sap_sesap_internet_graphics_server
sap_sesap_internet_graphics_server
sap_sesap_internet_graphics_server
sap_sesap_internet_graphics_server