← volver
CVE-2023-27524highbajo ataqueCWE-1188

Apache Superset: Session validation vulnerability when using provided default SECRET_KEY

100Vexday Risk Score

Corrige ahora. Ella está bajo explotación confirmada por CISA y tiene exploit funcional público.

ssvc Actcvss 8.9epss 97%
de la publicación al arma1 días
Publicada en NVD24 abr
1ª PoC+1d
metasploit+1d
CISA KEV+259d
probabilidad de explotación
97%top 1% de las CVE
explotación observada
CISA + VulnCheck
30 exploit(s) público(s)
Acción exigida por CISAplazo federal: 2024-01-29

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Versiones

Afectadas
>= 0
Investigado y redactado con IA a partir del advisory del fabricante y análisis públicos, con las fuentes citadas. Verifica siempre la versión corregida en el advisory oficial antes de actuar.
Session Validation attacks in Apache Superset versions up to and including 2.0.1. Installations that have not altered the default configured SECRET_KEY according to installation instructions allow for an attacker to authenticate and access unauthorized resources. This does not affect Superset administrators who have changed the default value for SECRET_KEY config. All superset installations should always set a unique secure random SECRET_KEY. Your SECRET_KEY is used to securely sign all session cookies and encrypting sensitive information on the database. Add a strong SECRET_KEY to your `superset_config.py` file like: SECRET_KEY = <YOUR_OWN_RANDOM_GENERATED_SECRET_KEY> Alternatively you can set it with `SUPERSET_SECRET_KEY` environment variable.
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:L
PoCs públicas encontradas30
exploitdbwww.exploit-db.com/exploits/51447no verificadogithubgithub.com/horizon3ai/CVE-2023-27524112githubgithub.com/jakabakos/CVE-2023-27524-Apache-Superset-Auth-Bypass-and-RCE28githubgithub.com/tardc/CVE-2023-2752411githubgithub.com/Okaytc/Superset_auth_bypass_check11githubgithub.com/ZZ-SOCMAP/CVE-2023-275243githubgithub.com/Ap0dexMe0/CVE-2023-275243githubgithub.com/Cappricio-Securities/CVE-2023-275242githubgithub.com/karthi-the-hacker/CVE-2023-275241githubgithub.com/h1n4mx0/Research-CVE-2023-275240githubgithub.com/MaanVader/CVE-2023-27524-POC0githubgithub.com/necroteddy/CVE-2023-275240githubgithub.com/CN016/Apache-Superset-SECRET_KEY-CVE-2023-27524-0githubgithub.com/h1n4mx0z/Research-CVE-2023-275240githubgithub.com/sumaiyafathima-code/CVE-2023-275240githubgithub.com/rachidafaf/bola-CVE-2023-275240vulncheckvulncheck.com/xdb/d23c099d5d89no verificadocve_referencepacketstormsecurity.com/files/175094/Apache-Superset-2.0.0-Remote-Code-Execution.htmlno verificadovulncheckvulncheck.com/xdb/6c5afecd773fno verificadovulncheckvulncheck.com/xdb/925cc8f34b1dno verificadovulncheckvulncheck.com/xdb/a4304932f8c7no verificadovulncheckvulncheck.com/xdb/3f3b3474bcd8no verificadovulncheckvulncheck.com/xdb/3a6a4fb601a4no verificadovulncheckvulncheck.com/xdb/96ea12e77e80no verificadovulncheckvulncheck.com/xdb/a2f39ee2e959no verificadovulncheckvulncheck.com/xdb/4abf848aca22no verificadovulncheckvulncheck.com/xdb/49026b01a9e8no verificadocve_referencepacketstormsecurity.com/files/172522/Apache-Superset-2.0.0-Authentication-Bypass.htmlno verificadovulncheckvulncheck.com/xdb/7b3694a59dccno verificadovulncheckvulncheck.com/xdb/d258b47e2ea9no verificado
⚠ Recursos públicos, para evaluar la exposición de sistemas que controlas o estás autorizado a probar. Prueba solo con autorización.