Fudo Enterprise Incorrect Authorization Vulnerability Allowing Access to Administrator Resources
Vulnerability
A vulnerability in Fudo Enterprise versions 5.5.0 through 5.6.2 allows low-privileged users to access certain administrator-only resources through improperly protected API endpoints. This access includes sensitive information such as system logs and parts of system configuration settings.
Impact
Exploitation of this vulnerability could lead to unauthorized access to sensitive administrative resources, including system logs and configuration settings.
Remediation
Users can upgrade to Fudo Enterprise version 5.6.3, which addresses this vulnerability. Instructions for upgrading are available in the Fudo Enterprise release notes.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
