2023年6月29日 サイバー脅威インテリジェンス

日次の脆弱性動向:KEV 追加、公開 exploit、重大開示、EPSS リスクの変化。

日次サマリー

  • Samsung Mobile Devices:本日 6 件が CISA KEV に新規掲載。
  • WordPress プラグインの RCE/悪用動向:本日 2 件の CVE をフラグ。
  • 10 件の新規 Critical 公開 — 露出サービスのパッチ状況を確認してください。

本日の重点脅威

最優先の 3 件の変化 — アナリストによる短評。CVE ダンプではありません。

実際の悪用を確認

CVE-2019-20500 D-Link DWL-2600AP Access Point Command Injection

  • 実環境での悪用(CISA KEV)
  • CISA KEV に掲載

D-Link DWL-2600AP Access Point Command Injection は CISA KEV に掲載 — 実環境での悪用が確認されています。掲載中は継続的な標的化が想定されます。

重大な露出リスク

CVE-2023-36469 Xwiki RCE

  • CVSS 9.9
  • リモートコード実行の露出リスク

新たな重大 Xwiki RCE(CVSS 9.9)— 公開直後のウィンドウ。成熟した悪用チェーンの前にインターネットスキャンが先行しがちです。

重大な露出リスク

CVE-2023-36470 Xwiki RCE

  • CVSS 9.9
  • リモートコード実行の露出リスク

新たな重大 Xwiki RCE(CVSS 9.9)— 公開直後のウィンドウ。成熟した悪用チェーンの前にインターネットスキャンが先行しがちです。

実際の悪用

CISA KEV — 実環境での悪用が確認

KEV 新規掲載を見る

エクスプロイト・PoC

本ダイジェストではこのカテゴリに該当なし。

新規エクスプロイト紐づけを見る

悪用動態

本ダイジェストではこのカテゴリに該当なし。

EPSS 上昇を見る

新規 Critical 公開

CVE-2020-18432 CVSS 9.8

File Upload vulnerability in SEMCMS PHP 3.7 allows remote attackers to upload arbitrary files and gain escalated privileges.

CVE-2022-44720 CVSS 9.8

An issue was discovered in Weblib Ucopia before 6.0.13.

CVE-2023-2834 CVSS 9.8

The BookIt plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.3.7.

CVE-2023-3249 CVSS 9.8

The Web3 – Crypto wallet Login & NFT token gating plugin for WordPress is vulnerable to authentication bypass in versions up to, and incl...

CVE-2023-33190 CVSS 9.9

Sealos is an open source cloud operating system distribution based on the Kubernetes kernel.

CVE-2023-36468 CVSS 9.9

XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it.

CVE-2023-36469 CVSS 9.9

XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it.

CVE-2023-36470 CVSS 9.9

XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it.

Xwiki commons is the common modules used by other XWiki top level projects.

CVE-2023-36487 CVSS 9.8

The password reset function in ILIAS 7.0_beta1 through 7.20 and 8.0_beta1 through 8.1 allows remote attackers to take over the account.

Critical 公開を見る

cvelogic Threat Intelligence