CVE-2018-2442
- EPSS 0.22%
- Published 14.08.2018 16:29:00
- Last modified 21.11.2024 04:03:49
In SAP BusinessObjects Business Intelligence, versions 4.0, 4.1 and 4.2, while viewing a Web Intelligence report from BI Launchpad, the user session details captured by an HTTP analysis tool could be reused in a HTML page while the user session is st...
CVE-2018-2439
- EPSS 0.46%
- Published 10.07.2018 18:29:01
- Last modified 21.11.2024 04:03:49
The SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, has insufficient request validation (for example, where the request is validated for authenticity and validity) and under certain conditions, will process invalid requests. Seve...
CVE-2018-2438
- EPSS 0.51%
- Published 10.07.2018 18:29:01
- Last modified 21.11.2024 04:03:48
The SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, has several denial-of-service vulnerabilities that allow an attacker to prevent legitimate users from accessing a service, either by crashing or flooding the service.
CVE-2018-2437
- EPSS 0.61%
- Published 10.07.2018 18:29:01
- Last modified 21.11.2024 04:03:48
The SAP Internet Graphics Service (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, allows an attacker to externally trigger IGS command executions which can lead to: disclosure of information and malicious file insertion or modification.
CVE-2018-2423
- EPSS 0.51%
- Published 09.05.2018 20:29:01
- Last modified 21.11.2024 04:03:47
SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, HTTP and RFC listener allows an attacker to prevent legitimate users from accessing a service, either by crashing or flooding the service.
CVE-2018-2422
- EPSS 0.51%
- Published 09.05.2018 20:29:01
- Last modified 21.11.2024 04:03:47
SAP Internet Graphics Server (IGS) Portwatcher, 7.20, 7.20EXT, 7.45, 7.49, 7.53, allows an attacker to prevent legitimate users from accessing a service, either by crashing or flooding the service.
CVE-2018-2421
- EPSS 0.51%
- Published 09.05.2018 20:29:00
- Last modified 21.11.2024 04:03:47
SAP Internet Graphics Server (IGS) Portwatcher, 7.20, 7.20EXT, 7.45, 7.49, 7.53, allows an attacker to prevent legitimate users from accessing a service, either by crashing or flooding the service.
CVE-2018-2420
- EPSS 0.65%
- Published 09.05.2018 20:29:00
- Last modified 21.11.2024 04:03:47
SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, allows an attacker to upload any file (including script files) without proper file format validation.
CVE-2018-2391
- EPSS 0.37%
- Published 14.02.2018 12:29:01
- Last modified 21.11.2024 04:03:44
Under certain conditions a malicious user can prevent legitimate users from accessing the SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, via IGS portwatcher service.
CVE-2018-2396
- EPSS 0.37%
- Published 14.02.2018 12:29:01
- Last modified 21.11.2024 04:03:44
Under certain conditions a malicious user can prevent legitimate users from accessing the SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, using IGS Interpreter service.