{"id":10218,"date":"2024-11-01T17:22:06","date_gmt":"2024-11-01T23:22:06","guid":{"rendered":"https:\/\/beaconlab.mx\/?post_type=publicacion&#038;p=6375"},"modified":"2024-12-21T08:54:45","modified_gmt":"2024-12-21T14:54:45","slug":"alerta-2024-61-explotacion-activa-de-vulnerabilidad-critica-en-microsoft-sharepoint-server","status":"publish","type":"publicacion","link":"https:\/\/beaconlab.us\/es\/publicacion\/alerta-2024-61-explotacion-activa-de-vulnerabilidad-critica-en-microsoft-sharepoint-server\/","title":{"rendered":"Alerta 2024-61 Explotaci\u00f3n activa de vulnerabilidad cr\u00edtica en Microsoft SharePoint Server"},"content":{"rendered":"<p><span data-contrast=\"none\">Recientemente empez\u00f3 a explotarse activamente la <\/span><span data-contrast=\"none\">vulnerabilidad identificada como <\/span><b><span data-contrast=\"none\">CVE-2024-38094<\/span><\/b><span data-contrast=\"none\"> en <\/span><b><span data-contrast=\"none\">Microsoft SharePoint Server, <\/span><\/b><span data-contrast=\"none\">publicada por Microsoft en julio pasado.\u00a0<\/span><span data-ccp-props=\"{&quot;335551550&quot;:6,&quot;335551620&quot;:6}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"none\">Esta vulnerabilidad est\u00e1 siendo un objetivo para grupos de amenazas persistentes avanzadas (<\/span><b><span data-contrast=\"none\">APT<\/span><\/b><span data-contrast=\"none\">) y <\/span><b><span data-contrast=\"none\">operadores de ransomware<\/span><\/b><span data-contrast=\"none\">, quienes utilizan esta debilidad para comprometer redes corporativas con fines de espionaje, robo de informaci\u00f3n confidencial y preparaci\u00f3n para ataques de ransomware. Los atacantes est\u00e1n interesados en acceder a servidores de SharePoint debido a la gran cantidad de datos sensibles que almacenan y a las integraciones que tienen con otros sistemas, lo que facilita un alcance amplio a la red comprometida. La vulnerabilidad se debe a una falla de deserializaci\u00f3n de datos no confiables que permite la ejecuci\u00f3n remota de c\u00f3digo. Un atacante autenticado con permisos de propietario del sitio puede inyectar y ejecutar c\u00f3digo malicioso en el servidor SharePoint, comprometiendo la confidencialidad, integridad y disponibilidad del sistema.<\/span><span data-ccp-props=\"{&quot;335551550&quot;:6,&quot;335551620&quot;:6}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"none\">La explotaci\u00f3n de esta vulnerabilidad, sin embargo, r<\/span><span data-contrast=\"none\">equiere que el atacante previamente haya adquirido privilegios elevados dentro del sitio de SharePoint, espec\u00edficamente permisos de propietario.<\/span><span data-ccp-props=\"{&quot;335551550&quot;:6,&quot;335551620&quot;:6}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"none\">Se recomienda aplicar las actualizaciones de seguridad proporcionadas por Microsoft que abordan esta vulnerabilidad, las cuales se pueden encontrar en los siguientes links dependiendo de la versi\u00f3n de Sharepoint con la que se cuente:<\/span><span data-ccp-props=\"{&quot;335551550&quot;:6,&quot;335551620&quot;:6}\">\u00a0<\/span><\/p>\n<p><b><span data-contrast=\"none\">SharePoint Server Subscription Edition:<\/span><\/b><span data-ccp-props=\"{&quot;335551550&quot;:6,&quot;335551620&quot;:6}\">\u00a0<\/span><\/p>\n<ul>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"47\" data-list-defn-props=\"{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;\uf0b7&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}\" aria-setsize=\"-1\" data-aria-posinset=\"1\" data-aria-level=\"1\"><b><span data-contrast=\"none\">Actualizaci\u00f3n de seguridad KB5002606<\/span><\/b><span data-contrast=\"none\"> (9 de julio de 2024):<\/span><span data-ccp-props=\"{&quot;335551550&quot;:6,&quot;335551620&quot;:6}\">\u00a0<\/span><\/li>\n<\/ul>\n<ul>\n<li data-leveltext=\"o\" data-font=\"Courier New\" data-listid=\"47\" data-list-defn-props=\"{&quot;335552541&quot;:1,&quot;335559685&quot;:1440,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Courier New&quot;,&quot;469769242&quot;:[9675],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;o&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}\" aria-setsize=\"-1\" data-aria-posinset=\"1\" data-aria-level=\"2\"><a href=\"https:\/\/support.microsoft.com\/es-es\/topic\/descripci%C3%B3n-de-la-actualizaci%C3%B3n-de-seguridad-para-sharepoint-server-subscription-edition-9-de-julio-de-2024-kb5002606-37569899-5abc-49a2-bd5e-f0ae45528f8f\"><span data-contrast=\"none\">Descripci\u00f3n de la actualizaci\u00f3n<\/span><\/a><span data-ccp-props=\"{&quot;335551550&quot;:6,&quot;335551620&quot;:6}\">\u00a0<\/span><\/li>\n<\/ul>\n<ul>\n<li data-leveltext=\"o\" data-font=\"Courier New\" data-listid=\"47\" data-list-defn-props=\"{&quot;335552541&quot;:1,&quot;335559685&quot;:1440,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Courier New&quot;,&quot;469769242&quot;:[9675],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;o&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}\" aria-setsize=\"-1\" data-aria-posinset=\"2\" data-aria-level=\"2\"><a href=\"https:\/\/www.microsoft.com\/download\/details.aspx?id=104123\"><span data-contrast=\"none\">Descarga directa<\/span><\/a><span data-ccp-props=\"{&quot;335551550&quot;:6,&quot;335551620&quot;:6}\">\u00a0<\/span><\/li>\n<\/ul>\n<p><span data-ccp-props=\"{&quot;335551550&quot;:6,&quot;335551620&quot;:6,&quot;335559685&quot;:1440}\">\u00a0<\/span><\/p>\n<p><b><span data-contrast=\"none\">SharePoint Server 2019:<\/span><\/b><span data-ccp-props=\"{&quot;335551550&quot;:6,&quot;335551620&quot;:6}\">\u00a0<\/span><\/p>\n<ul>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"48\" data-list-defn-props=\"{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;\uf0b7&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}\" aria-setsize=\"-1\" data-aria-posinset=\"1\" data-aria-level=\"1\"><b><span data-contrast=\"none\">Actualizaci\u00f3n de seguridad KB5002617<\/span><\/b><span data-contrast=\"none\"> (9 de julio de 2024):<\/span><span data-ccp-props=\"{&quot;335551550&quot;:6,&quot;335551620&quot;:6}\">\u00a0<\/span><\/li>\n<\/ul>\n<ul>\n<li data-leveltext=\"o\" data-font=\"Courier New\" data-listid=\"48\" data-list-defn-props=\"{&quot;335552541&quot;:1,&quot;335559685&quot;:1440,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Courier New&quot;,&quot;469769242&quot;:[9675],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;o&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}\" aria-setsize=\"-1\" data-aria-posinset=\"1\" data-aria-level=\"2\"><a href=\"https:\/\/support.microsoft.com\/es-es\/topic\/descripci%C3%B3n-de-la-actualizaci%C3%B3n-de-seguridad-para-sharepoint-server-2019-9-de-julio-de-2024-kb5002617-4b5e8f3e-5b8e-4b5e-8f3e-5b8e4b5e8f3e\"><span data-contrast=\"none\">Descripci\u00f3n de la actualizaci\u00f3n<\/span><\/a><span data-ccp-props=\"{&quot;335551550&quot;:6,&quot;335551620&quot;:6}\">\u00a0<\/span><\/li>\n<\/ul>\n<ul>\n<li data-leveltext=\"o\" data-font=\"Courier New\" data-listid=\"48\" data-list-defn-props=\"{&quot;335552541&quot;:1,&quot;335559685&quot;:1440,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Courier New&quot;,&quot;469769242&quot;:[9675],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;o&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}\" aria-setsize=\"-1\" data-aria-posinset=\"2\" data-aria-level=\"2\"><a href=\"https:\/\/www.microsoft.com\/download\/details.aspx?id=104124\"><span data-contrast=\"none\">Descarga directa<\/span><\/a><span data-ccp-props=\"{&quot;335551550&quot;:6,&quot;335551620&quot;:6}\">\u00a0<\/span><\/li>\n<\/ul>\n<p><span data-ccp-props=\"{&quot;335551550&quot;:6,&quot;335551620&quot;:6,&quot;335559685&quot;:1440}\">\u00a0<\/span><\/p>\n<p><b><span data-contrast=\"none\">SharePoint Enterprise Server 2016:<\/span><\/b><span data-ccp-props=\"{&quot;335551550&quot;:6,&quot;335551620&quot;:6}\">\u00a0<\/span><\/p>\n<ul>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"49\" data-list-defn-props=\"{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;\uf0b7&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}\" aria-setsize=\"-1\" data-aria-posinset=\"1\" data-aria-level=\"1\"><b><span data-contrast=\"none\">Actualizaci\u00f3n de seguridad KB5002618<\/span><\/b><span data-contrast=\"none\"> (9 de julio de 2024):<\/span><span data-ccp-props=\"{&quot;335551550&quot;:6,&quot;335551620&quot;:6}\">\u00a0<\/span><\/li>\n<\/ul>\n<ul>\n<li data-leveltext=\"o\" data-font=\"Courier New\" data-listid=\"49\" data-list-defn-props=\"{&quot;335552541&quot;:1,&quot;335559685&quot;:1440,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Courier New&quot;,&quot;469769242&quot;:[9675],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;o&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}\" aria-setsize=\"-1\" data-aria-posinset=\"1\" data-aria-level=\"2\"><a href=\"https:\/\/support.microsoft.com\/es-es\/topic\/descripci%C3%B3n-de-la-actualizaci%C3%B3n-de-seguridad-para-sharepoint-enterprise-server-2016-9-de-julio-de-2024-kb5002618-422e4b6a-4cde-4a3c-a446-75f3125bbbfc\"><span data-contrast=\"none\">Descripci\u00f3n de la actualizaci\u00f3n<\/span><\/a><span data-ccp-props=\"{&quot;335551550&quot;:6,&quot;335551620&quot;:6}\">\u00a0<\/span><\/li>\n<\/ul>\n<ul>\n<li data-leveltext=\"o\" data-font=\"Courier New\" data-listid=\"49\" data-list-defn-props=\"{&quot;335552541&quot;:1,&quot;335559685&quot;:1440,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Courier New&quot;,&quot;469769242&quot;:[9675],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;o&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}\" aria-setsize=\"-1\" data-aria-posinset=\"2\" data-aria-level=\"2\"><a href=\"https:\/\/www.microsoft.com\/download\/details.aspx?id=104125\"><span data-contrast=\"none\">Descarga directa<\/span><\/a><span data-ccp-props=\"{&quot;335551550&quot;:6,&quot;335551620&quot;:6}\">\u00a0<\/span><\/li>\n<\/ul>\n<p><span class=\"TextRun SCXW75759129 BCX0\" lang=\"ES-MX\" xml:lang=\"ES-MX\" data-contrast=\"none\"><span class=\"NormalTextRun SCXW75759129 BCX0\">Cabe mencionar que <\/span><span class=\"NormalTextRun SCXW75759129 BCX0\">l<\/span><span class=\"NormalTextRun SCXW75759129 BCX0\">os<\/span><span class=\"NormalTextRun SCXW75759129 BCX0\"> usuarios de <\/span><\/span><span class=\"TextRun SCXW75759129 BCX0\" lang=\"ES-MX\" xml:lang=\"ES-MX\" data-contrast=\"none\"><span class=\"NormalTextRun SCXW75759129 BCX0\">SharePoint Online<\/span><\/span><span class=\"TextRun SCXW75759129 BCX0\" lang=\"ES-MX\" xml:lang=\"ES-MX\" data-contrast=\"none\"><span class=\"NormalTextRun SCXW75759129 BCX0\">, la versi\u00f3n en la nube, <\/span><\/span><span class=\"TextRun SCXW75759129 BCX0\" lang=\"ES-MX\" xml:lang=\"ES-MX\" data-contrast=\"none\"><span class=\"NormalTextRun SCXW75759129 BCX0\">no est\u00e1n afectados<\/span><\/span><span class=\"TextRun SCXW75759129 BCX0\" lang=\"ES-MX\" xml:lang=\"ES-MX\" data-contrast=\"none\"><span class=\"NormalTextRun SCXW75759129 BCX0\"> por esta vulnerabilidad. Microsoft aplica actualizaciones y parches de seguridad de manera proactiva en sus servicios en la nube, garantizando la protecci\u00f3n contra este tipo de amenazas.<\/span><\/span><span class=\"EOP SCXW75759129 BCX0\" data-ccp-props=\"{&quot;335551550&quot;:6,&quot;335551620&quot;:6}\">\u00a0<\/span><\/p>\n","protected":false},"featured_media":10236,"template":"","class_list":["post-10218","publicacion","type-publicacion","status-publish","has-post-thumbnail","hentry"],"acf":{"activar_pdf_link":true,"pdf":10278,"numero_de_boletin":"2024-61","traffic_light_protocol":"Amber"},"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/beaconlab.us\/es\/wp-json\/wp\/v2\/publicacion\/10218","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/beaconlab.us\/es\/wp-json\/wp\/v2\/publicacion"}],"about":[{"href":"https:\/\/beaconlab.us\/es\/wp-json\/wp\/v2\/types\/publicacion"}],"version-history":[{"count":1,"href":"https:\/\/beaconlab.us\/es\/wp-json\/wp\/v2\/publicacion\/10218\/revisions"}],"predecessor-version":[{"id":10261,"href":"https:\/\/beaconlab.us\/es\/wp-json\/wp\/v2\/publicacion\/10218\/revisions\/10261"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/beaconlab.us\/es\/wp-json\/wp\/v2\/media\/10236"}],"wp:attachment":[{"href":"https:\/\/beaconlab.us\/es\/wp-json\/wp\/v2\/media?parent=10218"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}