CVE-2023-29059
 
Severity Score
7.8
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
4
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
3CX DesktopApp through 18.12.416 has embedded malicious code, as exploited in the wild in March 2023. This affects versions 18.12.407 and 18.12.416 of the 3CX DesktopApp Electron Windows application shipped in Update 7, and versions 18.11.1213, 18.12.402, 18.12.407, and 18.12.416 of the 3CX DesktopApp Electron macOS application.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2023-03-30 CVE Reserved
- 2023-03-30 CVE Published
- 2024-08-02 CVE Updated
- 2024-08-02 First Exploit
- 2024-11-18 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
CAPEC
References (6)
URL | Tag | Source |
---|---|---|
https://cwe.mitre.org/data/definitions/506.html | Technical Description |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.3cx.com/blog/news/desktopapp-security-alert | 2023-04-10 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
3cx Search vendor "3cx" | 3cx Search vendor "3cx" for product "3cx" | 18.11.1213 Search vendor "3cx" for product "3cx" and version "18.11.1213" | macos |
Affected
| ||||||
3cx Search vendor "3cx" | 3cx Search vendor "3cx" for product "3cx" | 18.12.402 Search vendor "3cx" for product "3cx" and version "18.12.402" | macos |
Affected
| ||||||
3cx Search vendor "3cx" | 3cx Search vendor "3cx" for product "3cx" | 18.12.407 Search vendor "3cx" for product "3cx" and version "18.12.407" | macos |
Affected
| ||||||
3cx Search vendor "3cx" | 3cx Search vendor "3cx" for product "3cx" | 18.12.407 Search vendor "3cx" for product "3cx" and version "18.12.407" | windows |
Affected
| ||||||
3cx Search vendor "3cx" | 3cx Search vendor "3cx" for product "3cx" | 18.12.416 Search vendor "3cx" for product "3cx" and version "18.12.416" | macos |
Affected
| ||||||
3cx Search vendor "3cx" | 3cx Search vendor "3cx" for product "3cx" | 18.12.416 Search vendor "3cx" for product "3cx" and version "18.12.416" | windows |
Affected
|