PT-2026-80864 · Unknown · Ransomlook
CVSS v4.0
9.2
Critical
| Vector | AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
RansomLook (affected versions not specified)
Description
An authorization flaw exists in the legacy database export functionality that allows unauthenticated remote users to retrieve private information. The
/export/<database> endpoint allows the export of selected internal databases without authentication. Because the application does not consistently apply private-entity access restrictions to all exportable databases, records associated with groups, markets, and posts marked as private may be disclosed. This could lead to the exposure of private ransomware intelligence, victim information, and internal tracking data.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
As a temporary workaround, restrict access to the
/export/<database> endpoint to minimize the risk of exploitation.Exploit
Missing Authorization
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ransomlook