CVE-2018-5204: Infraware-Global Ml Report

Critical severity, CVSS 9.8. EPSS: 2.3% chance of exploitation in the next 30 days.

ML Report version Between 2.00.000.0000 and 2.18.628.5980 contains a vulnerability that could allow remote attacker to download and execute remote arbitrary file by setting the arguments to the activex method. this can be leveraged for code execution.

Affected products

  • Infraware-Global Ml Report: from 2.00.000.0000, up to and including 2.18.628.5980

Published 2018-12-28. Last modified 2026-06-17.