Overly permissive cross-domain whitelist in eWON Flexy and eWON Cosy - CVE-2020-16230

 

Overly permissive cross-domain whitelist in eWON Flexy and eWON Cosy - CVE-2020-16230

Published: September 11, 2020


Vulnerability identifier: #VU46657
CSH Severity: Low
CVSS v4: 4.6 [CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2020-16230
CWE-ID: CWE-942
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to bypass the CORS protection mechanism.

The vulnerability exists due to incorrect processing of the "Origin" HTTP header that is supplied within HTTP request. A local administrator can supply arbitrary value via the "Origin" HTTP header, bypass implemented CORS protection mechanism and retrieve limited confidential information through sniffing.


Affected software

eWON Flexy
eWON Cosy

How to mitigate CVE-2020-16230

Install updates from vendor's website.

eWON Flexy - update to 14.1
eWON Cosy - update to 14.1

External References

Related Security Bulletins