CVE-2018-2437: SAP Internet Graphics Server
Critical severity, CVSS 9.1. EPSS: 3.3% chance of exploitation in the next 30 days.
The SAP Internet Graphics Service (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, allows an attacker to externally trigger IGS command executions which can lead to: disclosure of information and malicious file insertion or modification.
Affected products
- SAP Internet Graphics Server: version 7.20 only; version 7.20ext only; version 7.45 only; version 7.49 only; version 7.53 only
Published 2018-07-10. Last modified 2026-06-17.