Lucene search

K
akamaiblogAkamai Security Intelligence GroupAKAMAIBLOG:100EFC0C5BD8FF5D9BB50979FDA962DB
HistoryJun 08, 2023 - 9:00 a.m.

MOVEit SQLi Zero-Day (CVE-2023-34362) Exploited by CL0P Ransomware Group

2023-06-0809:00:00
Akamai Security Intelligence Group
www.akamai.com
93
moveit
sql injection
vulnerability
cl0p ransomware
recommendations
detection
mitigation
akamai

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS

0.97

Percentile

99.8%

Akamai Security Intelligence Group, which has been examining the MOVEit vulnerability and its exploitation, provides recommendations for detection and mitigation.

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS

0.97

Percentile

99.8%