Lucene search

K
impervablogGabi StapelIMPERVABLOG:B9DC02E3114E62BC685B2B43F7961A93
HistoryJul 10, 2023 - 3:50 p.m.

New MOVEit vulnerability CVE-2023-36934 blocked by Imperva

2023-07-1015:50:43
Gabi Stapel
www.imperva.com
93
cve-2023-36934
sql injection
moveit transfer
imperva
targeted attacks
security advisory
vulnerability
exploits

0.957 High

EPSS

Percentile

99.4%

On July 5, Progress Software released a security advisory for a new critical vulnerability in the MOVEit Transfer software, CVE-2023-36934. With a critical score of 9.1, this bug is a SQL injection vulnerability in the MOVEit Transfer web application with the potential to allow unauthorized access to the MOVEit database from unauthenticated attackers. A POC was released on July 9, and Imperva has already seen targeted attack attempts against customers.

For Imperva Cloud WAF and RASP customers, the exploits targeting this vulnerability are mitigated out of the box. Imperva WAF Gateway customers must enable the blocking policy if they use MOVEit software.

CVE-2023-36934 follows other recent MOVEit vulnerabilities like CVE-2023-34362, which was exploited in mass attacks by the Cl0p ransomware gang. Imperva customers are also protected against exploits targeting all previously released MOVEit vulnerabilities.If you have deployed MOVEit, it is recommended to upgrade to protected versions of the software or install patches as soon as possible.

Imperva is monitoring the situation and will provide updates as possible.

The post New MOVEit vulnerability CVE-2023-36934 blocked by Imperva appeared first on Blog.