CVE-2018-2368

SAP NetWeaver System Landscape Directory, LM-CORE 7.10, 7.20, 7.30, 7.31, 7.40, does not perform any authentication checks for functionalities that require user identity.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
sapCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 86%
VendorProductVersion
sapnetweaver_system_landscape_directory
7.10
sapnetweaver_system_landscape_directory
7.20
sapnetweaver_system_landscape_directory
7.30
sapnetweaver_system_landscape_directory
7.31
sapnetweaver_system_landscape_directory
7.40
𝑥
= Vulnerable software versions