MEDIUM · 6.5

CVE-2023-5455

A Cross-site request forgery vulnerability exists in ipa/session/login_password in all supported versions of IPA. This flaw allows an attacker to trick the user into submitting a request that could pe...

Vulnerability Description

A Cross-site request forgery vulnerability exists in ipa/session/login_password in all supported versions of IPA. This flaw allows an attacker to trick the user into submitting a request that could perform actions as the user, resulting in a loss of confidentiality and system integrity. During community penetration testing it was found that for certain HTTP end-points FreeIPA does not ensure CSRF protection. Due to implementation details one cannot use this flaw for reflection of a cookie representing already logged-in user. An attacker would always have to go through a new authentication attempt.

CVSS Score

6.5

MEDIUM

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality
NONE
Integrity
HIGH
Availability
NONE

Affected Products

VendorProductVersions
FreeipaFreeipa< 4.6.10
FedoraprojectFedora38
RedhatCodeready Linux Builder-
RedhatEnterprise Linux7.0
RedhatEnterprise Linux Desktop7.0
RedhatEnterprise Linux Eus8.6
RedhatEnterprise Linux For Arm 64 Eus8.8
RedhatEnterprise Linux For Ibm Z Systems7.0
RedhatEnterprise Linux For Ibm Z Systems Eus8.6
RedhatEnterprise Linux For Power Big Endian7.0
RedhatEnterprise Linux For Power Little Endian7.0
RedhatEnterprise Linux For Power Little Endian Eus8.6
RedhatEnterprise Linux For Scientific Computing7.0
RedhatEnterprise Linux Server9.0
RedhatEnterprise Linux Server Aus8.2
RedhatEnterprise Linux Server For Ibm Z Systems9.2
RedhatEnterprise Linux Server For Power Little Endian Update Services For Sap Solutions8.2
RedhatEnterprise Linux Server Tus8.2
RedhatEnterprise Linux Server Update Services For Sap Solutions8.2
RedhatEnterprise Linux Update Services For Sap Solutions9.0

Related Weaknesses (CWE)

References

FAQ

What is CVE-2023-5455?

CVE-2023-5455 is a vulnerability with a CVSS score of 6.5 (MEDIUM). A Cross-site request forgery vulnerability exists in ipa/session/login_password in all supported versions of IPA. This flaw allows an attacker to trick the user into submitting a request that could pe...

How severe is CVE-2023-5455?

CVE-2023-5455 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2023-5455?

Check the references section above for vendor advisories and patch information. Affected products include: Freeipa Freeipa, Fedoraproject Fedora, Redhat Codeready Linux Builder, Redhat Enterprise Linux, Redhat Enterprise Linux Desktop.