Skip to main content

Ransomware Uses New Exploit to Bypass ProxyNotShell Mitigations


Jasper_The_Rasper
Moderator
Forum|alt.badge.img+54

By Ionut Arghire on December 21, 2022

 

Recent Play ransomware attacks targeting Exchange servers were observed using a new exploit chain that bypasses Microsoft’s ProxyNotShell mitigations.

Similar to the old ProxyShell vulnerability, ProxyNotShell consists of two security defects in Exchange Server: CVE-2022-41040, a server-side request forgery (SSRF) bug with a CVSS score of 8.8; and CVE-2022-41082, a remote code execution (RCE) flaw with a CVSS score of 8.0.

 

>> Full Article <<

0 replies

Be the first to reply!

Reply