Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2023-28725

EPSS 2.20% · P85
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2023-28725

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
General Bytes Crypto Application Server (CAS) 20230120, as distributed with General Bytes BATM devices, allows remote attackers to execute arbitrary Java code by uploading a Java application to the /batm/app/admin/standalone/deployments directory, aka BATM-4780, as exploited in the wild in March 2023. This is fixed in 20221118.48 and 20230120.44.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
General Bytes Crypto Application Server 代码问题漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
General Bytes Crypto Application Server是General Bytes公司的提供基于浏览器的强大而简单的管理。 General Bytes Crypto Application Server (CAS) 20230120版本存在安全漏洞。攻击者利用该漏洞通过将Java应用程序上传到/batm/app/admin/standalone/deployments目录来执行任意Java代码。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2023-28725

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2023-28725

登录查看更多情报信息。

Same Patch Batch · n/a · 2023-03-21 · 11 CVEs total

CVE-2023-275699.8 CRITICALPrestaShop SQL注入漏洞
CVE-2023-275709.8 CRITICALPrestaShop SQL注入漏洞
CVE-2023-264978.6 HIGHSAMSUNG Mobile Chipset 缓冲区错误漏洞
CVE-2022-45635MEGAFEIS DBD+ 安全漏洞
CVE-2022-45636MEGAFEIS DBD+ 安全漏洞
CVE-2022-45637MEGAFEIS DBD+ 授权问题漏洞
CVE-2023-24709Paradox Security Systems IPR512 代码注入漏洞
CVE-2023-25134McAfee Total Protection 安全漏洞
CVE-2023-27087XXL-JOB 安全漏洞
CVE-2023-27842eXtplorer 安全漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2023-28725

No comments yet


Leave a comment