Vulnerabilities > CVE-2023-32550 - Exposure of Resource to Wrong Sphere vulnerability in Canonical Landscape

047910
CVSS 8.2 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
LOW
Availability impact
NONE
network
low complexity
canonical
CWE-668

Summary

Landscape's server-status page exposed sensitive system information. This data leak included GET requests which contain information to attack and leak further information from the Landscape API.

Common Weakness Enumeration (CWE)