PT-2023-3411 · Cloudflare · Cloudflare Warp Client For Windows

Ncabetecf

·

Publicado

2023-06-20

·

Atualizado

2023-06-29

·

CVE-2023-1862

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Cloudflare WARP client for Windows versions up to 2023.3.381.0
Description The issue is related to insufficient access control policy on an IPC Named Pipe, allowing a malicious actor to remotely access the warp-svc.exe binary. This could enable an attacker to trigger WARP connect and disconnect commands, as well as obtain network diagnostics and application configuration from the target's device. Exploitation requires specific conditions, including the target's device being reachable on port 445 and allowing authentication with NULL sessions or having knowledge of the target's credentials.
Recommendations For Cloudflare WARP client for Windows versions up to 2023.3.381.0, update to a version later than 2023.3.381.0 to resolve the issue. As a temporary workaround, consider restricting access to the warp-svc.exe binary and limiting authentication to prevent NULL sessions or unauthorized access. Additionally, ensure that port 445 is not reachable from untrusted networks to minimize the risk of exploitation.

Correção

Improper Access Control

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2023-03588
CVE-2023-1862
GHSA-Q55R-53C8-5642

Produtos afetados

Cloudflare Warp Client For Windows