CVE-2018-16716
18Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 8.6%
exploitation probability
8.6%top 5% of all CVEs
observed exploitation
nono source reports it
A path traversal vulnerability exists in viewcgi.c in the 2.0.7 through 2.2.26 legacy versions of the NCBI ToolBox, which may result in reading of arbitrary files (i.e., significant information disclosure) or file deletion via the nph-viewgif.cgi query string.
Affected products
n/a · n/a