NVD disclosure day

Published threat advisories for June 13, 2023

CVE advisoryCRITICAL

CVE-2023-34944

Chamilo LMS Arbitrary File Upload Leading to Code Execution.

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

An arbitrary file upload vulnerability exists in Chamilo's file upload component, allowing unauthenticated attackers to execute arbitrary code by uploading a crafted SVG file. This could compromise the confidentiality, integrity, and availability of the learning management system.

CVE advisoryCRITICAL

CVE-2023-31541

CKEditor Redmine Plugin Unrestricted File Upload Vulnerability.

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A vulnerability in a CKEditor plugin for Redmine allows unrestricted file uploads to the server. If the vulnerable feature is accessible, attackers could upload arbitrary files, potentially leading to server compromise. The primary concern is to determine if this plugin is deployed within Redmine environments.

CVE advisoryKnown Exploit

CVE-2023-20867

VMware Tools Authentication Bypass Vulnerability.

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in VMware Tools may affect the confidentiality and integrity of guest virtual machines. An attacker with root access to a compromised ESXi host could bypass authentication for host-to-guest operations. This presents a risk to guest data.

• CISA KEV

CVE advisoryCRITICAL

CVE-2023-3049

Attacker can take control of Lockcell systems by uploading malicious files

Halo Surface Signal: 3 out of 5 — possibly public-facing.

An external attacker can bypass file security in TMT Lockcell to execute unauthorized commands, potentially gaining full control over the host server. This access exposes sensitive data and threatens the integrity of our core business operations.

CVE advisoryKnown Exploit

CVE-2023-27997

Fortinet SSL-VPN Vulnerability Allows Code Execution.

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

Certain versions of Fortinet SSL-VPN are affected by a heap-based buffer overflow vulnerability, allowing remote attackers to execute arbitrary code or commands. This poses a significant risk of unauthorized system compromise and data access for affected organizations.

• CISA KEV