Vulnerability Details CVE-2018-2445
AdminTools in SAP BusinessObjects Business Intelligence, versions 4.1, 4.2, allows an attacker to manipulate the vulnerable application to send crafted requests on behalf of the application, resulting in a Server-Side Request Forgery (SSRF) vulnerability.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 46.0%
CVSS Severity
CVSS v3 Score 9.6
CVSS v2 Score 5.5
Products affected by CVE-2018-2445
-
cpe:2.3:a:sap:businessobjects_business_intelligence:4.1
-
cpe:2.3:a:sap:businessobjects_business_intelligence:4.2