Show plain JSON{"id": "CVE-2018-2382", "cveTags": [], "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 4.0, "accessVector": "NETWORK", "vectorString": "AV:N/AC:L/Au:S/C:P/I:N/A:N", "authentication": "SINGLE", "integrityImpact": "NONE", "accessComplexity": "LOW", "availabilityImpact": "NONE", "confidentialityImpact": "PARTIAL"}, "acInsufInfo": false, "impactScore": 2.9, "baseSeverity": "MEDIUM", "obtainAllPrivilege": false, "exploitabilityScore": 8.0, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false}], "cvssMetricV30": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"scope": "UNCHANGED", "version": "3.0", "baseScore": 6.5, "attackVector": "NETWORK", "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N", "integrityImpact": "NONE", "userInteraction": "NONE", "attackComplexity": "LOW", "availabilityImpact": "NONE", "privilegesRequired": "LOW", "confidentialityImpact": "HIGH"}, "impactScore": 3.6, "exploitabilityScore": 2.8}]}, "published": "2018-02-14T12:29:00.937", "references": [{"url": "https://blogs.sap.com/2018/02/13/sap-security-patch-day-february-2018/", "tags": ["Vendor Advisory"], "source": "cna@sap.com"}, {"url": "https://launchpad.support.sap.com/#/notes/2525222", "tags": ["Permissions Required", "Vendor Advisory"], "source": "cna@sap.com"}], "vulnStatus": "Analyzed", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "NVD-CWE-noinfo"}]}], "descriptions": [{"lang": "en", "value": "A vulnerability in the SAP internet Graphics Server, 7.20, 7.20EXT, 7.45, 7.49, 7.53, could allow a malicious user to store graphics in a controlled area and as such gain information from system area, which is not available to the user otherwise."}, {"lang": "es", "value": "Una vulnerabilidad en SAP internet Graphics Server 7.20, 7.20EXT, 7.45, 7.49 y 7.53 podr\u00eda permitir que un usuario malicioso almacene gr\u00e1ficos en un \u00e1rea controlada y, por lo tanto, obtenga informaci\u00f3n del \u00e1rea del sistema que no estar\u00eda disponible al usuario de otra forma."}], "lastModified": "2020-08-24T17:37:01.140", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:sap:internet_graphics_server:7.20:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BB63DB38-282E-44F5-B998-E0A419CBDDDF"}, {"criteria": "cpe:2.3:a:sap:internet_graphics_server:7.20ext:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "52899667-D267-4399-B1DD-428DCFAFECAA"}, {"criteria": "cpe:2.3:a:sap:internet_graphics_server:7.45:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3F87D81E-242D-4679-8DB3-479DB2A98F46"}, {"criteria": "cpe:2.3:a:sap:internet_graphics_server:7.49:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E19FB816-EFD3-46EA-A144-699055394B86"}, {"criteria": "cpe:2.3:a:sap:internet_graphics_server:7.53:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BAE591D5-05DA-41FE-A9C1-0A5521E83024"}], "operator": "OR"}]}], "sourceIdentifier": "cna@sap.com"}