
image credit: adobe stock
Barracuda Networks is warning that attackers exploited for up to eight months a recently patched zero-day vulnerability in its Email Security Gateway appliances.
The serious remote command injection vulnerability, tracked as CVE-2023-2868, existed in all hardware and virtual versions of Barracuda’s Email Security Gateway appliances. The vendor issued its first public alert about the attacks on May 23.