CVE-2018-2450

high

Description

SAP MaxDB (liveCache), versions 7.8 and 7.9, allows an attacker who gets DBM operator privileges to execute crafted database queries and therefore read, modify or delete sensitive data from database.

References

https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=499352742

https://launchpad.support.sap.com/#/notes/2660005

http://www.securityfocus.com/bid/105063

Details

Source: Mitre, NVD

Published: 2018-08-14

Updated: 2026-06-17

Risk Information

CVSS v2

Base Score: 6.5

Vector: CVSS2#AV:N/AC:L/Au:S/C:P/I:P/A:P

Severity: Medium

CVSS v3

Base Score: 7.2

Vector: CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Severity: High

EPSS

EPSS: 0.00774