Skip to content

Commit

Permalink
Merge pull request #672 from DIVD-NL/caseadmin_26-09
Browse files Browse the repository at this point in the history
caseadmin 26 09
  • Loading branch information
Lennaert89 authored Sep 26, 2023
2 parents 6348a00 + 4b91811 commit fb2b414
Show file tree
Hide file tree
Showing 4 changed files with 30 additions and 8 deletions.
11 changes: 9 additions & 2 deletions _cases/2023/DIVD-2023-00017.md
Original file line number Diff line number Diff line change
Expand Up @@ -3,7 +3,7 @@ layout: case
title: "Cisco Small Business Router Authentication Bypass"
author: Max van der Horst
lead: Max van der Horst
status: Open
status: Closed
excerpt: "Cisco RV016, RV042, RV042G and RV082 contain an authentication bypass vulnerability. "
researchers:
- Max van der Horst
Expand All @@ -13,7 +13,7 @@ product: "Cisco RV016, RV042, RV042G, RV082"

recommendation: "Apply the proposed workaround by restricting access to port 443 and 60443 and disabling remote management."
start: 2023-03-15
end:
end: 2023-09-26
timeline:
- start: 2023-03-15
end:
Expand All @@ -24,6 +24,13 @@ timeline:
- start: 2023-03-16
end:
event: "DIVD performs first mailrun."
- start: 2023-07-03
end:
event: "DIVD performs second mailrun."
- start: 2023-09-26
end:
event: "DIVD closes case after monitoring phase."
ips: 7620
---

## Summary
Expand Down
11 changes: 9 additions & 2 deletions _cases/2023/DIVD-2023-00024.md
Original file line number Diff line number Diff line change
Expand Up @@ -3,7 +3,7 @@ layout: case
title: "SQL injection in GeoServer - CVE-2023-25157"
author: Jeroen van de Weerd
lead: Max van der Horst
status: Open
status: Closed
excerpt: "GeoServer has a critical SQL injection vulnerability."
researchers:
- Max van der Horst
Expand All @@ -18,7 +18,7 @@ versions:

recommendation: "Install patches."
start: 2023-06-07
end:
end: 2023-09-26
timeline:
- start: 2023-02-20
end:
Expand All @@ -32,6 +32,13 @@ timeline:
- start: 2023-06-07
end:
event: "First version of this casefile."
- start: 2023-07-04
end:
event: "DIVD starts notification round."
- start: 2023-09-26
end:
event: "Case closed."
ips: 94
---

## Summary
Expand Down
8 changes: 6 additions & 2 deletions _cases/2023/DIVD-2023-00031.md
Original file line number Diff line number Diff line change
Expand Up @@ -17,9 +17,9 @@ versions:
recommendation: Update your system to the latest patched version
patch_status: Fully patched
#workaround: n/a
status : Open
status : Closed
start: 2023-07-25
end:
end: 2023-09-26
timeline:
- start: 2022-07-25
end:
Expand All @@ -30,7 +30,11 @@ timeline:
- start: 2023-07-26
end:
event: "DIVD is notifying through notification partners"
- start: 2023-09-26
end:
event: "DIVD decides to close case after monitoring phase."
# You can set IPs to n/a when this case isn't about IPs (e.g. stolen credentials)
ips: 1029
---
## Summary

Expand Down
8 changes: 6 additions & 2 deletions _cases/2023/DIVD-2023-00033.md
Original file line number Diff line number Diff line change
Expand Up @@ -21,9 +21,9 @@ versions:
recommendation: Update your system to the latest patched version
patch_status: Fully patched
#workaround: n/a
status : Open
status : Closed
start: 2023-07-18
end:
end: 2023-09-26
timeline:
- start: 2023-07-18
end:
Expand All @@ -43,8 +43,12 @@ timeline:
- start: 2023-08-16
end:
event: "DIVD starts collaboration with Shadowserver on data sharing."
- start: 2023-09-26
end:
event: "DIVD decides to close case after monitoring."

# You can set IPs to n/a when this case isn't about IPs (e.g. stolen credentials)
ips: 2497
---
## Summary

Expand Down

0 comments on commit fb2b414

Please sign in to comment.