SB2023033062 - Backdoor in 3CX Electron desktop app for Windows and Mac
Published: March 30, 2023 Updated: November 27, 2023
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Embedded malicious code (backdoor) (CVE-ID: CVE-2023-29059)
The vulnerability allows a remote attacker to gain unauthorized access to the application.
The vulnerability exists due to presence of embedded malicious functionality in the application code (aka backdoor) that allows a remote attacker to gain unauthorized access to the application.
Remediation
Install update from vendor's website.
References
- https://www.3cx.com/blog/news/desktopapp-security-alert/
- https://www.sentinelone.com/blog/smoothoperator-ongoing-campaign-trojanizes-3cx-software-in-software-supply-chain-attack/
- https://www.crowdstrike.com/blog/crowdstrike-detects-and-prevents-active-intrusion-campaign-targeting-3cxdesktopapp-customers/
- https://success.trendmicro.com/dcx/s/solution/000292711?language=en_US