Source |
The Hacker News |
Identifiant |
4520387 |
Date de publication |
2022-04-28 23:26:50 (vue: 2022-04-29 07:07:43) |
Titre |
Microsoft Azure Vulnerability Exposes PostgreSQL Databases to Other Customers |
Texte |
Microsoft on Thursday disclosed that it addressed a pair of issues with the Azure Database for PostgreSQL Flexible Server that could result in unauthorized cross-account database access in a region.
"By exploiting an elevated permissions bug in the Flexible Server authentication process for a replication user, a malicious user could leverage an improperly anchored regular expression to bypass |
Notes |
|
Envoyé |
Oui |
Condensat |
access account addressed anchored authentication azure bug bypass could cross customers database databases disclosed elevated exploiting exposes expression flexible improperly issues leverage malicious microsoft other pair permissions postgresql process region regular replication result server thursday unauthorized user vulnerability |
Tags |
Vulnerability
|
Stories |
|
Move |
|