CVE-2018-12464

CRITICAL

Micro Focus Secure Messaging Gateway <471 - SQL Injection

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2018-12464. PoCs published by Mehmet Ince, Mehmet Ince <[email protected]>, including Metasploit module exploits/linux/http/microfocus_secure_messaging_gateway.

AI-analyzed exploit summary This Metasploit module exploits CVE-2018-12465, a SQL injection and command injection vulnerability in MicroFocus Secure Messaging Gateway. It combines SQLi to create a user and command injection to execute arbitrary PHP code, achieving remote code execution.

Description

A SQL injection vulnerability in the web administration and quarantine components of Micro Focus Secure Messaging Gateway allows an unauthenticated remote attacker to execute arbitrary SQL statements against the database. This can be exploited to create an administrative account and used in conjunction with CVE-2018-12465 to achieve unauthenticated remote code execution. Affects Micro Focus Secure Messaging Gateway versions prior to 471. It does not affect previous versions of the product that use the GWAVA product name (i.e. GWAVA 6.5).

Exploits (2)

exploitdb WORKING POC
by Mehmet Ince · rubywebappsphp
https://www.exploit-db.com/exploits/45083

This Metasploit module exploits CVE-2018-12465, a SQL injection and command injection vulnerability in MicroFocus Secure Messaging Gateway. It combines SQLi to create a user and command injection to execute arbitrary PHP code, achieving remote code execution.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: MicroFocus Secure Messaging Gateway
No auth needed
Prerequisites: Network access to the target · Vulnerable MicroFocus Secure Messaging Gateway instance
devstral-2 · analyzed Feb 16, 2026 Full analysis →
metasploit WORKING POC EXCELLENT
by Mehmet Ince <[email protected]> · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/http/microfocus_secure_messaging_gateway.rb

This Metasploit module exploits a SQL injection (CVE-2018-12464) and command injection (CVE-2018-12465) in MicroFocus Secure Messaging Gateway to achieve unauthenticated remote code execution. It chains SQLi to create a user and then leverages command injection via a malformed DKIM domain record.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: MicroFocus Secure Messaging Gateway
No auth needed
Prerequisites: Network access to the target · Vulnerable MicroFocus Secure Messaging Gateway instance
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3
Core References
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/45083/
Various Sources x_refsource_confirm
https://support.microfocus.com/kb/doc.php?id=7023132

Scores

CVSS v3 10.0
EPSS 0.7644
EPSS Percentile 99.0%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Details

CWE
CWE-89
Status published
Products (1)
microfocus/secure_messaging_gateway < 471
Published Jun 29, 2018
Tracked Since Feb 18, 2026