CVE-2018-2384: Null Pointer Dereference
Published Feb 14, 2018
·Updated
Under certain conditions a malicious user provoking a Null Pointer dereference can prevent legitimate users from accessing the SAP Internet Graphics Server, 7.20, 7.20EXT, 7.45, 7.49, 7.53, and its services.
Affected Software
5 affected components
SAP Internet Graphics Server=7.20
SAP Internet Graphics Server=7.20ext
SAP Internet Graphics Server=7.45
SAP Internet Graphics Server=7.49
SAP Internet Graphics Server=7.53
Event History
Feb 14, 2018
CVE Published
via MITRE·12:00 PM
Data Sourced
via MITRE·12:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this SAP Internet Graphics Server vulnerability?
The vulnerability ID is CVE-2018-2384.
2
Which versions of SAP Internet Graphics Server are affected by this vulnerability?
The versions 7.20, 7.20EXT, 7.45, 7.49, and 7.53 of SAP Internet Graphics Server are affected.
3
What is the severity level of CVE-2018-2384?
The severity level of CVE-2018-2384 is medium.
4
How can an attacker exploit this vulnerability?
Under certain conditions, a malicious user can provoke a Null Pointer dereference to prevent legitimate users from accessing the SAP Internet Graphics Server and its services.
5
Are there any patches or fixes available for this vulnerability?
Yes, SAP has released security patches to address this vulnerability. More information can be found in the references provided.