Rewterz

Rewterz Threat Advisory – CVE-2023-2033 – Google Chrome V8 Zero-Day Vulnerability Exploited in the Wild

April 16, 2023
Rewterz

Rewterz Threat Alert – LockBit Ransomware – Active IOCs

April 17, 2023

Rewterz Threat Advisory – Multiple Apache Products Vulnerabilities

Severity

Medium

Analysis Summary

CVE-2023-22946 CVSS:8.8

Apache Spark could allow a remote authenticated attacker to gain elevated privileges on the system, caused by a flaw when using spark-submit. By providing specially crafted configuration-related classes on the classpath, an authenticated attacker could exploit this vulnerability to execute arbitrary code with the privileges of the submitting user.

CVE-2022-45064 CVSS:6.5

Apache Sling Engine is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote attacker could exploit this vulnerability to inject malicious script into a Web page which would be executed in a victim’s Web browser within the security context of the hosting Web site, once the page is viewed. An attacker could use this vulnerability to steal the victim’s cookie-based authentication credentials.

Impact

  • Privilege Escalation
  • Cross-Site Scripting

Indicators Of Compromise

CVE

  • CVE-2023-22946
  • CVE-2022-45064

Affected Vendors

Apache

Affected Products

  • Apache Spark 3.3.0
  • Apache Sling Engine

Remediation

Upgrade to the latest version of Apache Sling Engine and Apache Spark, available from the Apache Web site.

Apache Spark

Apache Sling Engine

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.