2024年3月20日 サイバー脅威インテリジェンス

日次の脆弱性動向:KEV 追加、公開 exploit、重大開示、EPSS リスクの変化。

日次サマリー

  • Walterjnr1 Employee Management System:公開エクスプロイトまたは PoC が関連付けられました (SQL Injection)
  • 10 件の新規 Critical 公開 — 露出サービスのパッチ状況を確認してください。

本日の重点脅威

最優先の 3 件の変化 — アナリストによる短評。CVE ダンプではありません。

悪用活動を確認

CVE-2023-46022 Code-projects Blood Bank SQL Injection

  • 公開エクスプロイトまたは PoC あり
  • 悪用活動が関連付け

Code-projects Blood Bank SQL Injection に公開エクスプロイトまたは PoC が関連 — 日和見的スキャンと続く標的型活動を想定してください。

悪用活動を確認

CVE-2023-46024 Phpgurukul Teacher Subject Allocation Management System SQL Injection

  • 公開エクスプロイトまたは PoC あり
  • 悪用活動が関連付け

Phpgurukul Teacher Subject Allocation Management System SQL Injection に公開エクスプロイトまたは PoC が関連 — 日和見的スキャンと続く標的型活動を想定してください。

重大な露出リスク

CVE-2024-2054 Articatech Artica Proxy Code Execution

  • CVSS 9.8
  • リモートコード実行の露出リスク

新たな重大 Articatech Artica Proxy Code Execution(CVSS 9.8)— 公開直後のウィンドウ。成熟した悪用チェーンの前にインターネットスキャンが先行しがちです。

実際の悪用

CISA KEV — 実環境での悪用が確認

本ダイジェストではこのカテゴリに該当なし。

KEV 新規掲載を見る

エクスプロイト・PoC

SQL Injection vulnerability in Employee Management System v1.0 allows attackers to run arbitrary SQL commands via the admin_id parameter...

CVE-2023-6538 悪用

SMU versions prior to 14.8.7825.01 are susceptible to unintended information disclosure, through URL manipulation.

SQL Injection vulnerability in delete.php in Code-Projects Blood Bank 1.0 allows attackers to run arbitrary SQL commands via the 'bid' pa...

SQL Injection vulnerability in index.php in phpgurukul Teacher Subject Allocation Management System 1.0 allows attackers to run arbitrary...

新規エクスプロイト紐づけを見る

悪用動態

本ダイジェストではこのカテゴリに該当なし。

EPSS 上昇を見る

新規 Critical 公開

CVE-2020-26942 CVSS 9.1

An issue discovered in Axigen Mail Server 10.3.x before 10.3.1.27 and 10.3.2.x before 10.3.3.1 allows unauthenticated attackers to submit...

CVE-2024-1202 CVSS 9.8

Authentication Bypass by Primary Weakness vulnerability in XPodas Octopod allows Authentication Bypass.

CVE-2024-2054 CVSS 9.8

The Artica-Proxy administrative web application will deserialize arbitrary PHP objects supplied by unauthenticated users and subsequently...

CVE-2024-2443 CVSS 9.1

A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor role in the Manageme...

CVE-2024-25239 CVSS 9.8

SQL Injection vulnerability in Sourcecodester Employee Management System v1.0 allows attackers to run arbitrary SQL commands via crafted...

CVE-2024-25294 CVSS 9.1

An SSRF issue in REBUILD v.3.5 allows a remote attacker to obtain sensitive information and execute arbitrary code via the FileDownloader...

CVE-2024-27922 CVSS 9.8

TOMP Bare Server implements the TompHTTP bare server.

Jupyter Server Proxy allows users to run arbitrary external processes alongside their Jupyter notebook servers and provides authenticated...

CVE-2024-28231 CVSS 9.6

eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group.

CVE-2024-29037 CVSS 9.1

datahub-helm provides the Kubernetes Helm charts for deploying Datahub and its dependencies on a Kubernetes cluster.

Critical 公開を見る

cvelogic Threat Intelligence