ZeroHour

CVE-2018-2445

CVSS 3.0
9.6 critical
EPSS
1%p63
Published
()
Modified
Description

AdminTools in SAP BusinessObjects Business Intelligence, versions 4.1, 4.2, allows an attacker to manipulate the vulnerable application to send crafted requests on behalf of the application, resulting in a Server-Side Request Forgery (SSRF) vulnerability.

Vendors
sap
Products
businessobjects business intelligence
Weakness
CWE-918
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.