Improper Authorization in Cortex XSOAR - CVE-2021-3044

 

Improper Authorization in Cortex XSOAR - CVE-2021-3044

Published: June 22, 2021


Vulnerability identifier: #VU54313
CSH Severity: High
CVSS v4: 9.3 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2021-3044
CWE-ID: CWE-285
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to bypass authorization checks.

The vulnerability exists due to an error in the REST API. A remote attacker can bypass authentication process and gain unauthorized access to the application.

Note, this vulnerability affects only to Cortex XSOAR configurations with active API key integrations.


Affected software

Cortex XSOAR

How to mitigate CVE-2021-3044

Install updates from vendor's website.

Cortex XSOAR - addressed in versions 6.1.0 271064, 6.2.0 1271065

External References

Related Security Bulletins