{"provider_name":"Hatena Blog","author_name":"tanigawa","title":"Over 3,000 Openfire servers vulnerable to takover attacks","url":"https://vul.hatenadiary.com/entry/2023/08/23/000000_1","categories":["\u30a2\u30d7\u30ea: Openfire","CVE-2023- 32315"],"description":"\u3010\u8a33\u30113,000\u53f0\u4ee5\u4e0a\u306eOpenfire\u30b5\u30fc\u30d0\u30fc\u306b\u4e57\u3063\u53d6\u308a\u653b\u6483\u306e\u8106\u5f31\u6027 \u3010\u6982\u8981\u3011 \u516c\u958b\u65e5 \u767b\u9332\u65e5 CVE\u756a\u53f7 NVD \u30d9\u30f3\u30c0\u30fc CVSS v3 CWE \u8106\u5f31\u6027 \u5099\u8003 2023/05/26 2023/05/08 CVE-2023-32315 NVD \u30d9\u30f3\u30c0\u30fc 7.5(NVD)8.6(GitHub) CWE-22 \u30d1\u30b9\u30fb\u30c8\u30e9\u30d0\u30fc\u30b5\u30eb \u3010\u56f3\u8868\u3011 Shodan \u30b9\u30ad\u30e3\u30f3\u7d50\u679c\uff08VulnCheck\uff09 \u8106\u5f31\u306a\u30b5\u30fc\u30d0\u30fc\u306b\u30a2\u30c3\u30d7\u30ed\u30fc\u30c9\u3055\u308c\u305f\u60aa\u610f\u306e\u3042\u308b\u30d7\u30e9\u30b0\u30a4\u30f3\uff08VulnCheck\uff09 Openfire\u306e\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30fb\u30ed\u30b0\u306b\u304a\u3051\u308b\u653b\u6483\u306e\u8a3c\u62e0\uff08VulnCheck\uff09 VulnCheck\u306ePoC\u30ed\u30b8\u30c3\u30af \u30a2\u30c3\u30d7\u30ed\u30fc\u30c9\u3055\u308c\u2026","blog_title":"TT \u8106\u5f31\u6027 Blog","version":"1.0","html":"<iframe src=\"https://hatenablog-parts.com/embed?url=https%3A%2F%2Fvul.hatenadiary.com%2Fentry%2F2023%2F08%2F23%2F000000_1\" title=\"Over 3,000 Openfire servers vulnerable to takover attacks - TT \u8106\u5f31\u6027 Blog\" class=\"embed-card embed-blogcard\" scrolling=\"no\" frameborder=\"0\" style=\"display: block; width: 100%; height: 190px; max-width: 500px; margin: 10px 0px;\"></iframe>","published":"2023-08-23 00:00:00","author_url":"https://blog.hatena.ne.jp/tanigawa/","width":"100%","height":"190","type":"rich","provider_url":"https://hatena.blog","image_url":"https://cdn-ak.f.st-hatena.com/images/fotolife/t/tanigawa/20230825/20230825200139.png","blog_url":"https://vul.hatenadiary.com/"}