Vulnerability Details CVE-2018-2420
SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, allows an attacker to upload any file (including script files) without proper file format validation.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 72.4%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 7.5
Products affected by CVE-2018-2420
-
cpe:2.3:a:sap:internet_graphics_server:7.20
-
cpe:2.3:a:sap:internet_graphics_server:7.20ext
-
cpe:2.3:a:sap:internet_graphics_server:7.45
-
cpe:2.3:a:sap:internet_graphics_server:7.49
-
cpe:2.3:a:sap:internet_graphics_server:7.53