TLS Certificate Tampering Vulnerability in Boundary Enterprise
CVE-2024-1052
8HIGH
Key Information:
- Vendor
- Hashicorp
- Status
- Boundary
- Boundary Enterprise
- Vendor
- CVE Published:
- 5 February 2024
Summary
Boundary and Boundary Enterprise by HashiCorp are susceptible to session hijacking due to vulnerabilities associated with TLS certificate tampering. An attacker with the capability to enumerate active or pending sessions may obtain a private key linked to a session and a valid trust on first use (TOFU) token. Leveraging this information, the attacker can craft a malicious TLS certificate to hijack an active session, leading to unauthorized access to the underlying services or applications. This vulnerability poses a significant risk to users and necessitates immediate attention.
Affected Version(s)
Boundary Enterprise Windows 0.8.0 < 0.15.0
Boundary Windows 0.8.0 < 0.15.0
References
CVSS V3.1
Score:
8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved
Collectors
NVD DatabaseMitre Database