CVE-2008-4387

critical

Description

Unspecified vulnerability in the Simba MDrmSap ActiveX control in mdrmsap.dll in SAP SAPgui allows remote attackers to execute arbitrary code via unknown vectors involving instantiation by Internet Explorer.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/46440

http://www.vupen.com/english/advisories/2008/3106

http://www.securityfocus.com/bid/32186

http://www.kb.cert.org/vuls/id/277313

http://osvdb.org/49721

Details

Source: Mitre, NVD

Published: 2008-11-10

Updated: 2017-08-08

Risk Information

CVSS v2

Base Score: 9.3

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

Severity: High

CVSS v3

Base Score: 9.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Severity: Critical