← back
CVE-2018-16716

CVE-2018-16716

18Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 8.6%
exploitation probability
8.6%top 5% of all CVEs
observed exploitation
nono source reports it
A path traversal vulnerability exists in viewcgi.c in the 2.0.7 through 2.2.26 legacy versions of the NCBI ToolBox, which may result in reading of arbitrary files (i.e., significant information disclosure) or file deletion via the nph-viewgif.cgi query string.
Affected products
n/a · n/a