Rapid7 Velociraptor
cpe:2.3:a:rapid7:velociraptor:*:*:*:*:*:*:*
- < 0.76.4
- < 0.75.9
A cross-organization authorization bypass vulnerability has been identified in the Velociraptor HTTP API, affecting versions prior to 0.76.4. This vulnerability allows a user with the reader role in the root organization to access files from other organizations without explicit permissions. However, the issue does not reverse; users with read access to a sub-organization cannot access files from other organizations or the root organization.
Exploitation of this vulnerability allows unauthorized access to files across different organizations, bypassing established permission controls.
Users should upgrade to Velociraptor version 0.76.4 or 0.75.9, depending on their current release.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.