CVE-2023-26258
Title: Arcserve Udp Auth Bypass
Auth Bypass
Proof Of Concept
PoC Available for CVE-2023-26258
CWE Category
CWE-863
Published Date
Jul 03, 2023
Modified Date
Nov 21, 2024
Exploit Status
Available
Score
9.8
CVSS v3.1
Exploit Probability (EPSS)
37.71%
Vulnerability Summary
CVE-2023-26258: Arcserve UDP through 9.0.6034 allows authentication bypass. The method getVersionInfo at WebServiceImpl/services/FlashServiceImpl leaks the AuthUUID token. This token can be used at /WebServiceImpl/services/VirtualStandbyServiceImpl to obtain a valid session. This session can be used to execute any task as administrator.
Impacted Vendors
Reference Links
https://support.arcserve.com/s/article/KB000015720?language=en_US
https://www.arcserve.com/products/arcserve-udp
https://www.mdsec.co.uk/2023/06/cve-2023-26258-remote-code-execution-in-arcserve-udp-backup/
https://support.arcserve.com/s/article/KB000015720?language=en_US
https://www.arcserve.com/products/arcserve-udp
https://www.mdsec.co.uk/2023/06/cve-2023-26258-remote-code-execution-in-arcserve-udp-backup/
CVSS v3.1
Source Entity
[email protected]
Severity
CRITICAL
9.8
Attack Vector
NETWORK
Complexity
LOW
Privileges
N/A
Interaction
NONE
Confidentiality
N/A
Integrity
N/A
Availability
N/A
Scope
UNCHANGED
RAW VECTOR
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Associated Attack Patterns (CAPEC)
Total: PatternsNo specific attack patterns mapped.
Likelihood
Severity
Page /
CVE-2023-26258 Exploits & PoCs (Proof Of Concept)
GitHub
https://github.com/mdsecactivebreach/CVE-2023-26258-ArcServe
MODIFIED
Vulnerability data or affected products updated.
PUBLISHED
Vulnerability first announced in NVD.
Attack Vector Matrix
Access Vector
NETWORK
Complexity
LOW
Privileges
N/A
Interaction
NONE
CVSS Vector String
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Stack
No specific products linked.