← back
CVE-2018-2363

CVE-2018-2363

EPSS 1.7%
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS EPSS 1.7%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
09 Jan 2018Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
SAP NetWeaver, SAP BASIS from 7.00 to 7.02, from 7.10 to 7.11, 7.30, 7.31, 7.40, from 7.50 to 7.52, contains code that allows you to execute arbitrary program code of the user's choice. A malicious user can therefore control the behaviour of the system or can potentially escalate privileges by executing malicious code without legitimate credentials.
Affected products
SAP SE · SAP NetWeaver

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →