PT-2026-79332 · Apache · Cloudstack
CVSS v3.1
5.4
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Apache CloudStack versions 4.15.0.0 through 4.20.3.0
Apache CloudStack versions 4.21.0.0 through 4.22.1.0
Description
Improper access control in the annotation functionality allows authenticated users to create and disclose comments without authorization. The 'addAnnotation' and 'listAnnotation' APIs perform an ownership check when an entity's UUID is specified but do not correctly honor the result. Consequently, any authenticated user can write annotations to or view existing annotations on an entity they do not own by providing its
UUID.Recommendations
Upgrade versions 4.15.0.0 through 4.20.3.0 to 4.20.3.1 or later.
Upgrade versions 4.21.0.0 through 4.22.1.0 to 4.22.1.1 or later.
Exploit
Fix
Improper Access Control
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cloudstack