CVE-2023-1718

HIGH

Bitrix24 22.0.300 - Unauthenticated Denial of Service via Crafted tmp_url Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2023-1718. PoCs published by jhonnybonny.

AI-analyzed exploit summary This Python script exploits a Denial of Service (DoS) vulnerability in Bitrix24 by sending multiple asynchronous HTTP requests to the target system. It leverages the improper file stream access vulnerability (CVE-2023-1718) to overwhelm the server.

Description

Improper file stream access in /desktop_app/file.ajax.php?action=uploadfile in Bitrix24 22.0.300 allows unauthenticated remote attackers to cause denial-of-service via a crafted "tmp_url".

Exploits (1)

nomisec WORKING POC 4 stars
by jhonnybonny · poc
https://github.com/jhonnybonny/Bitrix24DoS

This Python script exploits a Denial of Service (DoS) vulnerability in Bitrix24 by sending multiple asynchronous HTTP requests to the target system. It leverages the improper file stream access vulnerability (CVE-2023-1718) to overwhelm the server.

Classification
Working Poc 90%
Attack Type
Dos
Complexity
Moderate
Reliability
Reliable
Target: Bitrix24
No auth needed
Prerequisites: Target host URL · SITE_ID value · Python 3.x · aiohttp library
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (1)

Core 1
Core References
Exploit, Third Party Advisory third-party-advisory
https://starlabs.sg/advisories/23/23-1718/

Scores

CVSS v3 7.5
EPSS 0.2408
EPSS Percentile 97.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-835
Status published
Products (1)
bitrix24/bitrix24 22.0.300
Published Nov 01, 2023
Tracked Since Feb 18, 2026