CVE-2023-7102
Published
CVSS v3
9.8
CRITICAL
CVSS v2
N/A
Affected
3
PROJECTS
Description
Use of a Third Party library produced a vulnerability in Barracuda Networks Inc. Barracuda ESG Appliance which allowed Parameter Injection.This issue affected Barracuda ESG Appliance, from 5.1.3.001 through 9.2.1.001, until Barracuda removed the vulnerable logic.
POC for RCE vulnerability in ParseExcel library, and ParseXLSX too, as a depending library