> SecurePwn Part 2: Leaking Remote Memory Contents (CVE-2023-22897)
[AUTHOR: Julien Ahrens]
[DATE: 12/04/2023 16:07]
[LANGUAGE: EN]
While my last finding affecting SecurePoint’s UTM was quite interesting already, I was hit by a really hard OpenSSL Heartbleed flashback with this one. The following exploit works against both the admin portal on port 11115 as well as the user portal on port 443. Since the admin portal might be in a different VLAN, […]