Database/Firmware, BMC & network fabric

APC Easy UPS Online Monitoring Software (Windows and Windows Server): Unrestricted file upload leads to remote code
Impact
Unrestricted file upload leads to remote code execution by dropping a JSP payload. Full control of the host that orchestrates UPS shutdowns across the site - which is the same PHYSICAL outcome as above, plus a persistent Windows foothold sitting on the facility network.
Who can reach it
Unauthenticated network access to the monitoring server's web component.
What to do
Software upgrade per SEVD-2022-256-01, then treat the host as potentially compromised and rebuild it rather than patching in place if it was ever internet-reachable. Verify what the box could reach - it usually holds credentials for every UPS and every managed host it can shut down.
References
Related entries
- APC Easy UPS Online Monitoring Software (Windows and Windows Server): Critical functions in the UPS monitoring serverCVE-2022-42970 · APC Easy UPS Online Monitoring Software (Windows and Windows Server)Critical
- Ampere Altra and Altra Max before firmware 2.10c - PCIe root complex access control: The OS can re-initialise a PCIeCVE-2022-46892 · Ampere Altra and Altra Max before firmware 2.10c - PCIe root complex access controlCritical
- Linux SUNRPC / NFS-over-RDMA server (svc_rdma_build_writes): svc_rdma_build_writes can walk off the end of a WriteCVE-2022-49356 · Linux SUNRPC / NFS-over-RDMA server (svc_rdma_build_writes)Critical
- Linux kernel (drivers/infiniband/sw/siw): A remote peer turns a connection drop into a kernel use-after-free. TheCVE-2022-50666 · Linux kernel (drivers/infiniband/sw/siw)Critical
- SAUTER Controls Nova 200-220 series (firmware <=3.3-006) with BACnetstac <=4.2.1: Commands execute with no credentialsCVE-2023-0052 · SAUTER Controls Nova 200-220 series (firmware <=3.3-006) with BACnetstac <=4.2.1Critical
- Dell Enterprise SONiC OS (input validation): Improper input validation on Dell Networking switches running EnterpriseCVE-2023-32484 · Dell Enterprise SONiC OS (input validation)Critical
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.