Source |
The Hacker News |
Identifiant |
7766450 |
Date de publication |
2022-11-01 21:24:00 (vue: 2022-11-01 17:05:46) |
Titre |
Researchers Disclose Details of Critical \'CosMiss\' RCE Flaw Affecting Azure Cosmos DB |
Texte |
Microsoft on Tuesday said it addressed an authentication bypass vulnerability in Jupyter Notebooks for Azure Cosmos DB that enabled full read and write access.
The tech giant said the problem was introduced on August 12, 2022, and rectified worldwide on October 6, 2022, two days after responsible disclosure from Orca Security, which dubbed the flaw CosMiss.
"In short, if an attacker had |
Notes |
|
Envoyé |
Oui |
Condensat |
2022 access addressed affecting after attacker august authentication azure bypass cosmiss cosmos critical days details disclose disclosure dubbed enabled flaw flaw cosmiss from full giant had introduced in jupyter microsoft notebooks for october orca problem rce read rectified researchers responsible said security short tech tuesday two vulnerability which worldwide write |
Tags |
Vulnerability
|
Stories |
|
Move |
|