TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

SecurityWeek

MetInfo, Weaver E-cology Vulnerabilities in Attackers’ Crosshairs

Ionut Arghire · 1 day ago · Read original ↗

ATT&CK techniques detected

4 predictions
T1190Exploit Public-Facing Application
99%
“metinfo, weaver e - cology vulnerabilities in attackers ’ crosshairs threat actors have separately started exploiting two critical - severity vulnerabilities in metinfo and weaver e - cology that allow them to execute arbitrary code remotely, without authentication. metinfo is an…”
T1190Exploit Public-Facing Application
74%
“##ck, there are approximately 2, 000 metinfo cms instances accessible from the internet, mainly in china. weaver e - cology, which is also predominantly used in china, is an office automation and collaboration solution that enables organizations to manage portals, workflows, know…”
T1588.006Vulnerabilities
60%
“and discovery could happen concurrently : both are different post bodies to the same endpoint, ” vega notes. related : exploitation of ‘ copy fail ’ linux vulnerability begins related : over 40, 000 servers compromised in ongoing cpanel exploitation related : sonicwall urges imme…”
T1190Exploit Public-Facing Application
41%
“and discovery could happen concurrently : both are different post bodies to the same endpoint, ” vega notes. related : exploitation of ‘ copy fail ’ linux vulnerability begins related : over 40, 000 servers compromised in ongoing cpanel exploitation related : sonicwall urges imme…”

Summary

The security defects allow unauthenticated, remote attackers to execute arbitrary code through crafted requests.

The post MetInfo, Weaver E-cology Vulnerabilities in Attackers’ Crosshairs appeared first on SecurityWeek.