PT-2022-20589 · Pypi · Flask-Appbuilder
Pgaspar
·
Published
2022-07-29
·
Updated
2023-07-24
·
CVE-2022-31177
CVSS v3.1
2.7
Low
| Vector | AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Flask-AppBuilder versions prior to 4.1.3
Description
An authenticated Admin user could query other users by their salted and hashed passwords strings, using partial hashed password strings. The response would not include the hashed passwords, but an attacker could infer partial password hashes and their respective users. This issue is specific to the
AUTH DB database authentication option.Recommendations
For versions prior to 4.1.3, upgrade to version 4.1.3 to resolve the issue. As a temporary workaround, consider restricting access to the user query functionality to minimize the risk of exploitation. Avoid using the
AUTH DB database authentication option until the issue is resolved.Exploit
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Flask-Appbuilder