Source |
Security Affairs |
Identifiant |
3298832 |
Date de publication |
2021-08-27 17:36:29 (vue: 2021-08-27 18:06:07) |
Titre |
ChaosDB, a Critical Cosmos DB flaw affected thousands of Microsoft Azure Customers (Recyclage) |
Texte |
Microsoft has fixed a critical flaw in Cosmos DB that allowed any Azure user to remotely take over other users’ databases without any authorization. Researchers from Cloud security company Wiz disclosed technical details of a now-fixed Azure Cosmos database vulnerability, dubbed ChaosDB, that could have been potentially exploited by attackers to gain full admin access […]
|
Notes |
|
Envoyé |
Oui |
Condensat |
access admin affected allowed any attackers authorization azure been chaosdb cloud company cosmos could critical customers database databases details disclosed dubbed exploited fixed flaw from full gain has have microsoft now other over potentially remotely researchers security take technical thousands user users’ vulnerability without wiz |
Tags |
|
Stories |
|
Move |
|
Source |
Bleeping Computer |
Identifiant |
3296130 |
Date de publication |
2021-08-27 08:52:03 (vue: 2021-08-27 13:05:36) |
Titre |
Microsoft warns Azure customers of critical Cosmos DB vulnerability |
Texte |
Microsoft has warned thousands of Azure customers that a now-fixed critical vulnerability found in Cosmos DB allowed any user to remotely take over other users' databases by giving them full admin access without requiring authorization. [...] |
Notes |
|
Envoyé |
Oui |
Condensat |
access admin allowed any authorization azure cosmos critical customers databases fixed found full giving has microsoft now other over remotely requiring take them thousands user users vulnerability warned warns without |
Tags |
Vulnerability
|
Stories |
|
Move |
|