PT-2020-17186 · Microsoft · Ms Office 365
Published
2020-12-23
·
Updated
2022-09-02
·
CVE-2020-29550
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
URVE Build 24.03.2020
Description
An issue was discovered where the password of an integration user account, used for the connection of the MS Office 365 Integration Service, is stored in cleartext in configuration files as well as in the database. The password is contained in files such as Profiles/urve/files/sql db.backup, Server/data/pg wal/000000010000000A000000DD, Server/data/base/16384/18617, and Server/data/base/17202/8708746. This causes the password to be displayed as cleartext in the HTML code as
roomsreservationimport password in the "/urve/roomsreservationimport/roomsreservationimport/update-HTML5" endpoint.Recommendations
As a temporary workaround, consider restricting access to the vulnerable files and database to minimize the risk of exploitation. Avoid using the
roomsreservationimport password variable in the affected API endpoint until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.Exploit
Cleartext Storage of Sensitive Information
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ms Office 365