Fixed Intel

CISA Known Exploited Vulnerability

This vulnerability is actively exploited in the wild and listed in the CISA Known Exploited Vulnerabilities catalog.

Remediation Deadline: Jun 16, 2023

High
CISA KEV

CVE-2023-2868

Barracuda NetworksEmail Security Gateway (ESG) Appliance

Barracuda Email Security Gateway (ESG) appliance contains an improper input validation vulnerability of a user-supplied .tar file, leading to remote command injection.

Required Action

https://status.barracuda.com/incidents/34kx82j5n4q9; https://nvd.nist.gov/vuln/detail/CVE-2023-2868

Vulnerability Overview

Severity
High
CISA KEV
Yes
Ransomware
Unknown
Published
May 26, 2023
KEV Added
May 26, 2023
Due Date
Jun 16, 2023
Related Articles
0

Vendor

Barracuda Networks

Email Security Gateway (ESG) Appliance