Rapid7 InsightCloudSec resource.db() method access
CVE-2023-1306
8.8HIGH
What is CVE-2023-1306?
Authenticated attackers can exploit an insecure resource.db() method within Rapid7's InsightCloudSec, allowing them to execute unauthorized Python method calls via a Jinja template. This vulnerability affects both Managed and SaaS deployments, as well as the Self-Managed version up to 23.2.1, enabling potential code execution risks. Rapid7 has addressed this issue in deployed updates as of February 1, 2023.
Affected Version(s)
InsightCloudSec 0 <= 23.2.0
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
- 🟡
Public PoC available
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved
Credit
Mike Alfaro of Nephosec