CVE-2018-2392
72Vexday Risk Score
Patch now. It exploitation observed by VulnCheck and has a working public exploit.
ssvc Actepss 41%
from disclosure to weapon961 days
Published on NVDFeb 14
1st PoC+961d
metasploit+28d
VulnCheck+2670d
exploitation probability
41%top 1% of all CVEs
observed exploitation
yesVulnCheck
1 public exploit(s)
Under certain conditions SAP Internet Graphics Server (IGS) 7.20, 7.20EXT, 7.45, 7.49, 7.53, fails to validate XML External Entity appropriately causing the SAP Internet Graphics Server (IGS) to become unavailable.
Affected products
SAP SE · SAP Internet Graphics Serverpublic PoCs found — 1
vulncheckvulncheck.com/xdb/967ff7911b2bunverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.