SAP MaxDB ODBC Driver CVE-2018-2418 Unspecified Remote Code Injection Vulnerability
BID:104115
CVE-2018-2418 |Info
SAP MaxDB ODBC Driver CVE-2018-2418 Unspecified Remote Code Injection Vulnerability
| Bugtraq ID: | 104115 |
| Class: | Input Validation Error |
| CVE: |
CVE-2018-2418 |
| Remote: | Yes |
| Local: | No |
| Published: | May 08 2018 12:00AM |
| Updated: | May 08 2018 12:00AM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
SAP MaxDB ODBC Driver 7.9.09.07 |
| Not Vulnerable: | |
Discussion
SAP MaxDB ODBC Driver CVE-2018-2418 Unspecified Remote Code Injection Vulnerability
SAP MaxDB ODBC Driver is prone to an unspecified remote code-injection vulnerability.
An attacker can exploit this issue to inject and execute arbitrary code in the context of the affected application.
MaxDB ODBC Driver 7.9.09.07 is vulnerable; other versions may also be affected.
SAP MaxDB ODBC Driver is prone to an unspecified remote code-injection vulnerability.
An attacker can exploit this issue to inject and execute arbitrary code in the context of the affected application.
MaxDB ODBC Driver 7.9.09.07 is vulnerable; other versions may also be affected.
Exploit / POC
SAP MaxDB ODBC Driver CVE-2018-2418 Unspecified Remote Code Injection Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
SAP MaxDB ODBC Driver CVE-2018-2418 Unspecified Remote Code Injection Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
SAP MaxDB ODBC Driver CVE-2018-2418 Unspecified Remote Code Injection Vulnerability
References:
References:
- SAP Homepage (SAP)
- SAP Security Note # 2610231 (SAP)
- SAP Security Patch Day �?? May 2018 (SAP)