CVE detail
CVE-2023-7102 — CVE-2023-7102
Published 2023-12-24 · Modified 2026-06-17 · Vendor barracuda · Product email_security_gateway_300_firmware · Source nvd
CRITICAL
severity
CVSS-derived band
0.4360
EPSS probability
exploitation probability, 30d
99.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
Use of a Third Party library produced a vulnerability in Barracuda Networks Inc. Barracuda ESG Appliance which allowed Parameter Injection.This issue affected Barracuda ESG Appliance, from 5.1.3.001 through 9.2.1.001, until Barracuda removed the vulnerable logic.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References