PT-2020-12222 · Walmart · Concorde
Fitzprop
·
Published
2020-03-15
·
Updated
2022-02-10
·
CVE-2020-10591
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Walmart Labs Concord versions prior to 1.44.0
Description
An issue allows remote attackers to discover host information, nodes, API metadata, and references to usernames via the "api/v1/apikey" endpoint. This is due to CORS Access-Control-Allow-Origin headers having a potentially unsafe dependency on Origin headers and not being configurable.
Recommendations
For versions prior to 1.44.0, update to version 1.44.0 or later to resolve the issue. As a temporary workaround, consider restricting access to the "api/v1/apikey" endpoint to minimize the risk of exploitation.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Concorde