New CVE Exploits Target Apache Web Server and VMware ESXi
by CrazyDwarf2 - Tuesday October 3, 2023 at 08:40 AM
#1
Security researchers have discovered two new CVE exploits that can be used to hack into Apache web servers and VMware ESXi servers. 
The CVE exploits, which are tracked as CVE-2023-23287 and CVE-2023-21999, allow attackers to gain remote code execution (RCE) on vulnerable servers. 

CVE-2023-23287 is a vulnerability in the Apache httpd server that can be exploited to allow attackers to execute arbitrary code on the server. 
The vulnerability is caused by an error in the way that the httpd server handles certain types of HTTP requests. CVE-2023-21999 is a vulnerability in the VMware ESXi hypervisor that can be exploited to allow attackers to execute arbitrary code on the ESXi server. 
The vulnerability is caused by an error in the way that the ESXi server handles certain types of network traffic. 
Both of these CVE exploits are rated as critical by the Common Vulnerability Scoring System (CVSS). 

This means that they are very easy to exploit and can have a severe impact on vulnerable systems.
Reply
#2
CVE-2023-23287 is not assigned
Reply
#3
I predict big things to come from there
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  RESURGE Malware Exploits Ivanti Flaw with Rootkit and Web Shell Features KingDice 0 231 03-31-2025, 08:41 AM
Last Post: KingDice
  Over 37,000 VMware ESXi servers vulnerable to ongoing attacks KingDice 0 356 03-09-2025, 09:13 AM
Last Post: KingDice
  ANSSI and FBI hack into C2 server to remove PlugX malware Angel_Batista 0 576 01-15-2025, 02:15 PM
Last Post: Angel_Batista
  Apple Urges Updates to Patch Active Zero-Day Exploits levi12 4 879 11-25-2024, 10:43 AM
Last Post: v12run
  DDoS attacks may target election infrastructure, FBI warns KingJulien 6 1,272 10-01-2024, 03:15 PM
Last Post: azdfgaAG

Forum Jump:


 Users browsing this thread: