NA

CVE-2023-1718

Published: 01/11/2023 Updated: 09/11/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Improper file stream access in /desktop_app/file.ajax.php?action=uploadfile in Bitrix24 22.0.300 allows unauthenticated remote malicious users to cause denial-of-service via a crafted "tmp_url".

Vulnerable Product Search on Vulmon Subscribe to Product

bitrix24 bitrix24 22.0.300

Github Repositories

This Python script is designed to exploit a security vulnerability in Bitrix24, leading to a Denial of Service (DoS) attack. The vulnerability, identified as CVE-2023-1718, allows an attacker to disrupt the normal operation of a Bitrix24 instance.

Bitrix24 DoS Exploit This repository contains a Python script designed to exploit a Denial of Service (DoS) vulnerability in Bitrix24 Please note that this script is for educational purposes only, and its use for unauthorized activities is illegal and unethical CVE-2023-1718 CVE Identifier: CVE-2023-1718 Vulnerability Type: Denial of Service (DoS) Target System: Bitrix24 Us