Resposta de Emergência

Windows Error Reporting Service Privilege Enhancement Vulnerability (CVE-2023-36874)

julho 17, 2023 | NSFOCUS

Overview NSFOCUS security team recently monitored that Microsoft released a security patch, fixing the Windows Error Reporting service privilege escalation vulnerability (CVE-2023-36874). An attacker who successfully exploited this vulnerability could gain administrator privileges. Microsoft’s official security update announcement in July stated that attackers must have local access to the target computer, and users must be […]

Adobe ColdFusion Multiple Security Vulnerabilities Notification

julho 13, 2023 | NSFOCUS

Overview Recently, NSFOCUS CERT monitored that Adobe has officially released security notices and fixed multiple Adobe ColdFusion vulnerabilities. Affected users should take measures as soon as possible. The key vulnerabilities are as follows: Adobe ColdFusion Access Control Bypass Vulnerability (CVS 2023-29298): Adobe ColdFusion has an access control bypass vulnerability that allows attackers to access management […]

Apple WebKit Remote Code Execution Vulnerability (CVS 2023-37450) Notification

julho 12, 2023 | NSFOCUS

Overview Recently, NSFOCUS CERT detected that Apple has officially fixed a 0-day vulnerability in Apple WebKit. Remote attackers can trigger this vulnerability by inducing the victim to open a specially crafted web page, which can ultimately enable the execution of arbitrary code on the target system. At present, the vulnerability has been monitored for wild […]

GitLab Unauthorized Access Vulnerability (CVS 2023-3484) Notification

julho 10, 2023 | NSFOCUS

Overview Recently, NSFOCUS CERT monitored that GitLab officially issued a security notice, which fixed an unauthorized access vulnerability in Gitlab EE. In some cases, remote attackers with low privileges can change the name or path of a public top-level group beyond their authority. The CVSS score is 8.0. Affected users should take measures as soon […]

Grafana Identity Authentication Bypass Vulnerability (CVS 2023-3128) Notification

junho 30, 2023 | NSFOCUS

Overview Recently, NSFOCUS CERT detected a vulnerability in Grafana’s authentication bypass (CVE-2023-3128). Azure AD can support multiple users with the same email address. When configuring Azure AD to support multiple users, unauthenticated attackers can exploit this vulnerability by creating malicious email account requests. Due to Grafana’s failure to uniquely authenticate Azure AD email accounts based […]

VMware vCenter Server Multiple High Risk Vulnerabilities Notification

junho 28, 2023 | NSFOCUS

Overview Recently, NSFOCUS CERT found that VMware’s official security announcement disclosed multiple vulnerabilities in VMware vCenter Server, which could be used by attackers to cause remote code execution, cross-border write and read, etc. Currently, the official version has been updated and fixed. Affected users should take protective measures as soon as possible. Key Vulnerabilities vCenter […]

Fortinet FortiNAC Remote Code Execution Vulnerability (CVS 2023-33299) Notification

junho 26, 2023 | NSFOCUS

Overview Recently, NSFOCUS CERT monitored that Fortinet officially fixed a Fortinet FortinaC remote code execution vulnerability (CVE-2023-33299). Unauthenticated remote attackers can exploit this vulnerability by sending a customized request to the service running on TCP port 1050, and an attacker who successfully exploits this vulnerability can execute arbitrary code on the target system. The CVSS […]

VMware Aria Operations for Networks Remote Code Execution Vulnerability (CVS 2023-20887) Notification

junho 20, 2023 | NSFOCUS

Overview Recently, NSFOCUS CERT detected a remote code execution vulnerability in VMware Aria Operations for Networks. Due to a specific flaw in the createSupportBundle method, the string entered by the user is not properly validated when executing system calls. Unauthenticated remote attackers can exploit this vulnerability through command injection, ultimately enabling the execution of arbitrary […]

Openfire Console Identity Authentication Bypass Vulnerability (CVS 2023-32315) Notification

junho 16, 2023 | NSFOCUS

Overview Recently, NSFOCUS CERT detected an identity authentication bypass vulnerability in the Openfire console (CVE-2023-32315). The Admin Console of Openfire is a web-based application that has been found to be vulnerable to path traversal attacks by setting up the environment. Unauthenticated attackers use the unauthenticated Openfire setting environment in a configured Openfire environment to access […]

Fortinet FortiOS SSL VPN Remote Code Execution Vulnerability (CVS 2023-27997)

junho 14, 2023 | NSFOCUS

Overview Recently, NSFOCUS CERT found that Fortinet has officially fixed a remote code execution vulnerability in FortiOS SSL VPN (CVS-2023-27997). Due to the heap-based Buffer overflow error in SSL VPN, an unauthenticated attacker can trigger the vulnerability by sending a specially crafted packet, which can ultimately enable the execution of arbitrary code on the target […]