PT-2022-6550 · Unknown+3 · Prometheus Exporter Toolkit+3

Lei Wan

·

Published

2022-11-28

·

Updated

2024-08-06

·

CVE-2022-46146

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Prometheus Exporter Toolkit versions prior to 0.7.2 and 0.8.2
Description The issue is related to the implementation of the bcrypt hashing algorithm in the Prometheus Exporter Toolkit, which can be exploited to bypass authentication when handling the web.yml file. An attacker with access to the hashed password can poison the internal authentication cache, allowing them to authenticate against Prometheus. The attacker must have access to the hashed password, stored on disk, to bypass the authentication.
Recommendations For versions prior to 0.7.2, update to version 0.7.2 or later. For versions prior to 0.8.2, update to version 0.8.2 or later. As a temporary workaround, consider restricting access to the hashed password to minimize the risk of exploitation. Restrict access to the web.yml file to prevent attackers from obtaining the necessary information to bypass authentication.

Exploit

Fix

Improper Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2022-3315
ALT-PU-2024-4857
AZL-41992
BDU:2023-02338
CVE-2022-46146
GHSA-7RG2-CXVP-9P7P
GO-2022-1130
OPENSUSE-SU-2023_0465-1
OPENSUSE-SU-2023_2594-1
OPENSUSE-SU-2023_2598-1
OPENSUSE-SU-2023_3868-1
OPENSUSE-SU-2024:12637-1
OPENSUSE-SU-2024:12650-1
OPENSUSE-SU-2024:12691-1
OPENSUSE-SU-2024:12700-1
OPENSUSE-SU-2024:12872-1
OPENSUSE-SU-2024:12904-1
OPENSUSE-SU-2024:13109-1
SUSE-RU-2023:2592-1
SUSE-SU-2023:0460-1
SUSE-SU-2023:0465-1
SUSE-SU-2023:0467-1
SUSE-SU-2023:0811-1
SUSE-SU-2023:0812-1
SUSE-SU-2023:0821-1
SUSE-SU-2023:1857-1
SUSE-SU-2023:1858-1
SUSE-SU-2023:1859-1
SUSE-SU-2023:2182-1
SUSE-SU-2023:2183-1
SUSE-SU-2023:2185-1
SUSE-SU-2023:2187-1
SUSE-SU-2023:2578-1
SUSE-SU-2023:2579-1
SUSE-SU-2023:2594-1
SUSE-SU-2023:2598-1
SUSE-SU-2023:3867-1
SUSE-SU-2023:3868-1
SUSE-SU-2023:3875-1
SUSE-SU-2023_0460-1
SUSE-SU-2023_0465-1
SUSE-SU-2023_0467-1
SUSE-SU-2024:0191-1
SUSE-SU-2024:0196-1

Affected Products

Alt Linux
Prometheus Exporter Toolkit
Red Os
Suse