TLS Certificate Tampering Vulnerability in Boundary Enterprise
CVE-2024-1052

8HIGH

Key Information:

Vendor
Hashicorp
Status
Boundary
Boundary Enterprise
Vendor
CVE Published:
5 February 2024

Summary

Boundary and Boundary Enterprise by HashiCorp are susceptible to session hijacking due to vulnerabilities associated with TLS certificate tampering. An attacker with the capability to enumerate active or pending sessions may obtain a private key linked to a session and a valid trust on first use (TOFU) token. Leveraging this information, the attacker can craft a malicious TLS certificate to hijack an active session, leading to unauthorized access to the underlying services or applications. This vulnerability poses a significant risk to users and necessitates immediate attention.

Affected Version(s)

Boundary Enterprise Windows 0.8.0 < 0.15.0

Boundary Windows 0.8.0 < 0.15.0

References

CVSS V3.1

Score:
8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Collectors

NVD DatabaseMitre Database
.