Aller au contenu

Fiche vulnérabilité

CVE-2023-7102 : faille critique barracuda email security gateway 300… (CVSS 9.8)

Description

Use of a Third Party library produced a vulnerability in Barracuda Networks Inc. Barracuda ESG Appliance which allowed Parameter Injection.This issue affected Barracuda ESG Appliance, from 5.1.3.001 through 9.2.1.001, until Barracuda removed the vulnerable logic.

En bref

Sévérité
Critique (CVSS 9.8)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
24 déc. 2023
Dernière mise à jour
17 juin 2026

Produits concernés

  • barracuda email security gateway 300 firmware
  • barracuda email security gateway 400 firmware
  • barracuda email security gateway 600 firmware
  • barracuda email security gateway 800 firmware
  • barracuda email security gateway 900 firmware

Références

Rechercher une autre vulnérabilité dans la base CVE