CVE-2023-42475
published 2023-10-10CVE-2023-42475: The Statutory Reporting application has a vulnerable file storage location, potentially enabling low privileged attacker to read server files with minimal…
PriorityP420medium4.3CVSS 3.1
AVNACLPRLUINSUCLINAN
EPSS
0.44%
35.6th percentile
The Statutory Reporting application has a vulnerable file storage location, potentially enabling low privileged attacker to read server files with minimal impact on confidentiality.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| sap | s_4hana | — | — |
| sap | s_4hana | — | — |
| sap | s_4hana | — | — |
| sap | s_4hana | — | — |
| sap | s_4hana | — | — |
| sap | s_4hana | — | — |
| sap_se | sap_s_4hana_core | — | — |
| sap_se | sap_s_4hana_core | — | — |
| sap_se | sap_s_4hana_core | — | — |
| sap_se | sap_s_4hana_core | — | — |
| sap_se | sap_s_4hana_core | — | — |
| sap_se | sap_s_4hana_core | — | — |
CVSS provenance
nvdv3.14.3MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
cisa9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-wj24-9p82-86v2: The Statutory Reporting application has a vulnerable file storage location, potentially enabling low privileged attacker to read server files with min
ghsa_unreviewed·2023-10-10
CVE-2023-42475 [MEDIUM] CWE-200 GHSA-wj24-9p82-86v2: The Statutory Reporting application has a vulnerable file storage location, potentially enabling low privileged attacker to read server files with min
The Statutory Reporting application has a vulnerable file storage location, potentially enabling low privileged attacker to read server files with minimal impact on confidentiality.
CISA
Fortinet FortiOS Heap-Based Buffer Overflow Vulnerability
cisa·2022-12-13·CVSS 9.8
CVE-2022-42475 [CRITICAL] CWE-197 Fortinet FortiOS Heap-Based Buffer Overflow Vulnerability
Vulnerability: Fortinet FortiOS Heap-Based Buffer Overflow Vulnerability
Affected: Fortinet FortiOS
Multiple versions of Fortinet FortiOS SSL-VPN contain a heap-based buffer overflow vulnerability which can allow an unauthenticated, remote attacker to execute arbitrary code or commands via specifically crafted requests.
Required Action: Apply updates per vendor instructions.
Notes: https://www.fortiguard.com/psirt/FG-IR-22-398; https://nvd.nist.gov/vuln/detail/CVE-2022-42475
Remediation Due Date: 2023-01-03
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
ATT&CK
BOLDMOVE
mitre_attack·CVSS 9.8
CVE-2022-42475 [CRITICAL] BOLDMOVE
BOLDMOVE
[BOLDMOVE](https://attack.mitre.org/software/S1184) is a type of backdoor malware written in C linked to People’s Republic of China operations from 2022 through 2023. [BOLDMOVE](https://attack.mitre.org/software/S1184) includes both Windows and Linux variants, with some Linux variants specifically designed for FortiGate Firewall devices. [BOLDMOVE](https://attack.mitre.org/software/S1184) is linked to zero-day exploitation of CVE-2022-42475 in FortiOSS SSL-VPNs.(Citation: Google Cloud BOLDMOVE 2023) The record for [BOLDMOVE](https://attack.mitre.org/software/S1184) only covers known Linux variants.
ATT&CK
COATHANGER
mitre_attack·CVSS 9.8
[CRITICAL] COATHANGER
COATHANGER
[COATHANGER](https://attack.mitre.org/software/S1105) is a remote access tool (RAT) targeting FortiGate networking appliances. First used in 2023 in targeted intrusions against military and government entities in the Netherlands along with other victims, [COATHANGER](https://attack.mitre.org/software/S1105) was disclosed in early 2024, with a high confidence assessment linking this malware to a state-sponsored entity in the People's Republic of China. [COATHANGER](https://attack.mitre.org/software/S1105) is delivered after gaining access to a FortiGate device, with in-the-wild observations linked to exploitation of CVE-2022-42475. The name [COATHANGER](https://attack.mitre.org/software/S1105) is based on a unique string in the malware used to encrypt configuration files on disk
2023-10-10
Published