Lucene search

K
nvd[email protected]NVD:CVE-2008-4387
HistoryNov 10, 2008 - 4:15 p.m.

CVE-2008-4387

2008-11-1016:15:04
CWE-94
web.nvd.nist.gov
6

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.5

Confidence

Low

EPSS

0.061

Percentile

93.6%

Unspecified vulnerability in the Simba MDrmSap ActiveX control in mdrmsap.dll in SAP SAPgui allows remote attackers to execute arbitrary code via unknown vectors involving instantiation by Internet Explorer.

Affected configurations

Nvd
Node
sapsapgui
OR
simba_technologiesmdrmsap_activex_control
AND
microsoftinternet_explorer
VendorProductVersionCPE
sapsapgui*cpe:2.3:a:sap:sapgui:*:*:*:*:*:*:*:*
simba_technologiesmdrmsap_activex_control*cpe:2.3:a:simba_technologies:mdrmsap_activex_control:*:*:*:*:*:*:*:*
microsoftinternet_explorer*cpe:2.3:a:microsoft:internet_explorer:*:*:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.5

Confidence

Low

EPSS

0.061

Percentile

93.6%

Related for NVD:CVE-2008-4387