PT-2022-24469 · Zalando · Zalando Skipper

Hossein Vita

+1

·

Published

2022-10-24

·

Updated

2023-03-28

·

CVE-2022-38580

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Zalando Skipper versions prior to v0.13.237
Description The issue allows an attacker to exploit a vulnerable version of the proxy to access the internal metadata server or other unauthenticated URLs by adding a specific header (X-Skipper-Proxy) to the HTTP request. This is a case of Server-Side Request Forgery (SSRF).
Recommendations To resolve the issue, upgrade to Zalando Skipper version v0.13.237 or later. As a temporary workaround, consider using the dropRequestHeader("X-Skipper-Proxy") filter to mitigate the risk of exploitation.

Exploit

Fix

SSRF

Weakness Enumeration

Related Identifiers

CVE-2022-38580
GHSA-F2RJ-M42R-6JM2
GO-2022-1086

Affected Products

Zalando Skipper