CVE-2024-32113's Re-Emergence And Amplified Risks
ID: 52192ce9-4844-5b5e-8573-ab19fb8d988d
STIX ID: report--52192ce9-4844-5b5e-8573-ab19fb8d988d
Feed Name: Cyble Blog
Threat Score
Cyble Global Sensor Intelligence observed active exploitation of CVE-2024-32113 (Apache OFBiz path traversal leading to RCE, CVSS 9.1) and reported that CVE-2024-45195 can bypass previous fixes, increasing exploitation activity; attackers have used crafted POST requests to endpoints like /webtools/control/forgotPassword;/ProgramExport to execute Groovy payloads and deploy Mirai, with recommended mitigation to upgrade to OFBiz 18.12.16 and deploy WAFs, least-privilege, and monitoring.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
