← back
CVE-2018-2392observed exploitation

CVE-2018-2392

72Vexday Risk Score

Patch now. It exploitation observed by VulnCheck and has a working public exploit.

ssvc Actepss 41%
from disclosure to weapon961 days
Published on NVDFeb 14
1st PoC+961d
metasploit+28d
VulnCheck+2670d
exploitation probability
41%top 1% of all CVEs
observed exploitation
yesVulnCheck
1 public exploit(s)
Under certain conditions SAP Internet Graphics Server (IGS) 7.20, 7.20EXT, 7.45, 7.49, 7.53, fails to validate XML External Entity appropriately causing the SAP Internet Graphics Server (IGS) to become unavailable.
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.