CVE-2018-2445: SSRF
AdminTools in SAP BusinessObjects Business Intelligence, versions 4.1, 4.2, allows an attacker to manipulate the vulnerable application to send crafted requests on behalf of the application, resulting in a Server-Side Request Forgery (SSRF) vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2018-2445.
What is the severity of CVE-2018-2445?
The severity of CVE-2018-2445 is critical with a severity value of 9.6.
What is the affected software for CVE-2018-2445?
The affected software for CVE-2018-2445 is SAP BusinessObjects Business Intelligence versions 4.1 and 4.2.
What is the description of CVE-2018-2445?
CVE-2018-2445 is a Server-Side Request Forgery (SSRF) vulnerability in AdminTools in SAP BusinessObjects Business Intelligence versions 4.1 and 4.2, allowing an attacker to manipulate the vulnerable application to send crafted requests on behalf of the application.
How do I fix the vulnerability CVE-2018-2445?
To fix the vulnerability CVE-2018-2445, it is recommended to apply the necessary security patches provided by SAP.