Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-826j-8wp2-4x6q

Опубликовано: 25 авг. 2023
Источник: github
Github: Прошло ревью
CVSS3: 8.8

Описание

Netmaker Vulnerable to Privilege Escalation From Non Admin To Admin User

Impact

A Mass assignment vulnerability was found allowing a non-admin user to escalate privileges to admin user.

Patches

Issue is patched in 0.17.1, and fixed in 0.18.6+.

If Users are using 0.17.1, they should run "docker pull gravitl/netmaker:v0.17.1" and "docker-compose up -d". This will switch them to the patched users

If users are using v0.18.0-0.18.5, they should upgrade to v0.18.6 or later.

Workarounds

If using 0.17.1, can just pull the latest docker image of backend and restart server.

References

Credit to Project Discovery, and in particular https://github.com/rootxharsh , https://github.com/iamnoooob, and https://github.com/projectdiscovery

Пакеты

Наименование

github.com/gravitl/netmaker

go
Затронутые версииВерсия исправления

< 0.17.1

0.17.1

Наименование

github.com/gravitl/netmaker

go
Затронутые версииВерсия исправления

>= 0.18.0, < 0.18.6

0.18.6

EPSS

Процентиль: 68%
0.00554
Низкий

8.8 High

CVSS3

Дефекты

CWE-915

Связанные уязвимости

CVSS3: 8.8
nvd
больше 2 лет назад

Netmaker makes networks with WireGuard. A Mass assignment vulnerability was found in versions prior to 0.17.1 and 0.18.6 that allows a non-admin user to escalate privileges to those of an admin user. The issue is patched in 0.17.1 and fixed in 0.18.6. If Users are using 0.17.1, they should run `docker pull gravitl/netmaker:v0.17.1` and `docker-compose up -d`. This will switch them to the patched users If users are using v0.18.0-0.18.5, they should upgrade to v0.18.6 or later. As a workaround, someone using version 0.17.1 can pull the latest docker image of the backend and restart the server.

EPSS

Процентиль: 68%
0.00554
Низкий

8.8 High

CVSS3

Дефекты

CWE-915