Vulnerability Details CVE-2023-33965
Brook is a cross-platform programmable network tool. The `tproxy` server is vulnerable to a drive-by command injection. An attacker may fool a victim into visiting a malicious web page which will trigger requests to the local `tproxy` service leading to remote code execution. A patch is available in version 20230606.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.063
EPSS Ranking 90.6%
CVSS Severity
CVSS v3 Score 9.6
Products affected by CVE-2023-33965
-
cpe:2.3:a:txthinking:brook:20170316
-
cpe:2.3:a:txthinking:brook:20170322
-
cpe:2.3:a:txthinking:brook:20170323
-
cpe:2.3:a:txthinking:brook:20170330
-
cpe:2.3:a:txthinking:brook:20170516
-
cpe:2.3:a:txthinking:brook:20170723
-
cpe:2.3:a:txthinking:brook:20170809
-
cpe:2.3:a:txthinking:brook:20170814
-
cpe:2.3:a:txthinking:brook:20170826
-
cpe:2.3:a:txthinking:brook:20170909
-
cpe:2.3:a:txthinking:brook:20171111
-
cpe:2.3:a:txthinking:brook:20171113
-
cpe:2.3:a:txthinking:brook:20180112
-
cpe:2.3:a:txthinking:brook:20180227
-
cpe:2.3:a:txthinking:brook:20180401
-
cpe:2.3:a:txthinking:brook:20180601
-
cpe:2.3:a:txthinking:brook:20180707
-
cpe:2.3:a:txthinking:brook:20180909
-
cpe:2.3:a:txthinking:brook:20181212
-
cpe:2.3:a:txthinking:brook:20190205
-
cpe:2.3:a:txthinking:brook:20190401
-
cpe:2.3:a:txthinking:brook:20190601
-
cpe:2.3:a:txthinking:brook:20200101
-
cpe:2.3:a:txthinking:brook:20200102
-
cpe:2.3:a:txthinking:brook:20200201
-
cpe:2.3:a:txthinking:brook:20200214
-
cpe:2.3:a:txthinking:brook:20200501
-
cpe:2.3:a:txthinking:brook:20200502
-
cpe:2.3:a:txthinking:brook:20200701
-
cpe:2.3:a:txthinking:brook:20200801
-
cpe:2.3:a:txthinking:brook:20200901
-
cpe:2.3:a:txthinking:brook:20200909
-
cpe:2.3:a:txthinking:brook:20210101
-
cpe:2.3:a:txthinking:brook:20210214
-
cpe:2.3:a:txthinking:brook:20210401
-
cpe:2.3:a:txthinking:brook:20210601
-
cpe:2.3:a:txthinking:brook:20210616
-
cpe:2.3:a:txthinking:brook:20210701
-
cpe:2.3:a:txthinking:brook:20220401
-
cpe:2.3:a:txthinking:brook:20220404
-
cpe:2.3:a:txthinking:brook:20220406
-
cpe:2.3:a:txthinking:brook:20220501
-
cpe:2.3:a:txthinking:brook:20220515
-
cpe:2.3:a:txthinking:brook:20220707
-
cpe:2.3:a:txthinking:brook:20221010
-
cpe:2.3:a:txthinking:brook:20221212
-
cpe:2.3:a:txthinking:brook:20230101
-
cpe:2.3:a:txthinking:brook:20230122
-
cpe:2.3:a:txthinking:brook:20230401
-
cpe:2.3:a:txthinking:brook:20230404
-
cpe:2.3:a:txthinking:brook:20230404.5.1
-
cpe:2.3:a:txthinking:brook:20230601