Source |
Bleeping Computer |
Identifiant |
3296130 |
Date de publication |
2021-08-27 08:52:03 (vue: 2021-08-27 13:05:36) |
Titre |
Microsoft warns Azure customers of critical Cosmos DB vulnerability |
Texte |
Microsoft has warned thousands of Azure customers that a now-fixed critical vulnerability found in Cosmos DB allowed any user to remotely take over other users' databases by giving them full admin access without requiring authorization. [...] |
Notes |
|
Envoyé |
Oui |
Condensat |
access admin allowed any authorization azure cosmos critical customers databases fixed found full giving has microsoft now other over remotely requiring take them thousands user users vulnerability warned warns without |
Tags |
Vulnerability
|
Stories |
|
Move |
|
Src |
Date (GMT) |
Titre |
Description |
Tags |
Stories |
Notes |
 |
2021-08-27 17:36:29 |
(Déjà vu) ChaosDB, a Critical Cosmos DB flaw affected thousands of Microsoft Azure Customers (lien direct) |
Microsoft has fixed a critical flaw in Cosmos DB that allowed any Azure user to remotely take over other users’ databases without any authorization. Researchers from Cloud security company Wiz disclosed technical details of a now-fixed Azure Cosmos database vulnerability, dubbed ChaosDB, that could have been potentially exploited by attackers to gain full admin access […]
|
|
|
|