PT-2020-17186 · Microsoft · Ms Office 365

Published

2020-12-23

·

Updated

2022-09-02

·

CVE-2020-29550

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions URVE Build 24.03.2020
Description An issue was discovered where the password of an integration user account, used for the connection of the MS Office 365 Integration Service, is stored in cleartext in configuration files as well as in the database. The password is contained in files such as Profiles/urve/files/sql db.backup, Server/data/pg wal/000000010000000A000000DD, Server/data/base/16384/18617, and Server/data/base/17202/8708746. This causes the password to be displayed as cleartext in the HTML code as roomsreservationimport password in the "/urve/roomsreservationimport/roomsreservationimport/update-HTML5" endpoint.
Recommendations As a temporary workaround, consider restricting access to the vulnerable files and database to minimize the risk of exploitation. Avoid using the roomsreservationimport password variable in the affected API endpoint until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Cleartext Storage of Sensitive Information

Weakness Enumeration

Related Identifiers

CVE-2020-29550

Affected Products

Ms Office 365