Cybersecurity Alerts

Actively Exploited Vulnerabilities

← Back to Cybersecurity Alerts

CVE-2023-2868

Barracuda Networks | Email Security Gateway (ESG) ApplianceAdded 2023-05-26Remediation Deadline 2023-06-16

Barracuda Networks ESG Appliance Improper Input Validation Vulnerability

Barracuda Email Security Gateway (ESG) appliance contains an improper input validation vulnerability of a user-supplied .tar file, leading to remote command injection.

Required Action

Apply updates per vendor instructions.

Weakness Classification

CWE-20

References