Overly permissive cross-domain whitelist in eWON Flexy and eWON Cosy - CVE-2020-16230
Published: September 11, 2020
Vulnerability details
The vulnerability allows a local user to bypass the CORS protection mechanism.
The vulnerability exists due to incorrect processing of the "Origin" HTTP header that is supplied within HTTP request. A local administrator can supply arbitrary value via the "Origin" HTTP header, bypass implemented CORS protection mechanism and retrieve limited confidential information through sniffing.
Affected software
eWON Cosy
How to mitigate CVE-2020-16230
eWON Cosy - update to 14.1