
ISC StormCast for Wednesday, November 30th, 2022
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
00:00
The CVE 2022, 34 721, Remote Code Execution Vulnerability Is Actively Being Exploited
The vulnerability does allow unauthenticated attackers with network access to basically send an HTTP request to then take over the access manager product. The attack would be coming in on port 500, the standard Ike port. And anchors, UV cameras, at least that's how I think you pronounce this print name is uploading a data to the cloud even if the user configures the camera not to do so. So something you may want to be aware of if you're using one of these products.
Transcript
Play full episode