CVE-2023-5455
MEDIUMDescription
A Cross-site request forgery vulnerability exists in ipa/session/login_password in all supported versions of IPA. This flaw allows an attacker to trick the user into submitting a request that could perform actions as the user, resulting in a loss of confidentiality and system integrity. During community penetration testing it was found that for certain HTTP end-points FreeIPA does not ensure CSRF protection. Due to implementation details one cannot use this flaw for reflection of a cookie representing already logged-in user. An attacker would always have to go through a new authentication attempt.
Is your site exposed to CVE-2023-5455?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| freeipa | freeipa |
| freeipa | freeipa |
| freeipa | freeipa |
| freeipa | freeipa |
| freeipa | freeipa |
| fedoraproject | fedora |
| fedoraproject | fedora |
| fedoraproject | fedora |
| redhat | codeready_linux_builder |
| redhat | enterprise_linux |
| redhat | enterprise_linux |
| redhat | enterprise_linux |
| redhat | enterprise_linux |
| redhat | enterprise_linux |
| redhat | enterprise_linux_desktop |
| redhat | enterprise_linux_eus |
| redhat | enterprise_linux_eus |
| redhat | enterprise_linux_eus |
| redhat | enterprise_linux_eus |
| redhat | enterprise_linux_eus |
| redhat | enterprise_linux_for_arm_64_eus |
| redhat | enterprise_linux_for_arm_64_eus |
| redhat | enterprise_linux_for_arm_64_eus |
| redhat | enterprise_linux_for_ibm_z_systems |
| redhat | enterprise_linux_for_ibm_z_systems |
| redhat | enterprise_linux_for_ibm_z_systems |
| redhat | enterprise_linux_for_ibm_z_systems_eus |
| redhat | enterprise_linux_for_ibm_z_systems_eus |
| redhat | enterprise_linux_for_ibm_z_systems_eus |
| redhat | enterprise_linux_for_ibm_z_systems_eus |
| redhat | enterprise_linux_for_power_big_endian |
| redhat | enterprise_linux_for_power_little_endian |
| redhat | enterprise_linux_for_power_little_endian |
| redhat | enterprise_linux_for_power_little_endian |
| redhat | enterprise_linux_for_power_little_endian_eus |
| redhat | enterprise_linux_for_power_little_endian_eus |
| redhat | enterprise_linux_for_power_little_endian_eus |
| redhat | enterprise_linux_for_power_little_endian_eus |
| redhat | enterprise_linux_for_scientific_computing |
| redhat | enterprise_linux_server |
| redhat | enterprise_linux_server |
| redhat | enterprise_linux_server_aus |
| redhat | enterprise_linux_server_aus |
| redhat | enterprise_linux_server_aus |
| redhat | enterprise_linux_server_aus |
| redhat | enterprise_linux_server_for_ibm_z_systems |
| redhat | enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions |
| redhat | enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions |
| redhat | enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions |
| redhat | enterprise_linux_server_tus |
| redhat | enterprise_linux_server_tus |
| redhat | enterprise_linux_server_tus |
| redhat | enterprise_linux_server_update_services_for_sap_solutions |
| redhat | enterprise_linux_server_update_services_for_sap_solutions |
| redhat | enterprise_linux_server_update_services_for_sap_solutions |
| redhat | enterprise_linux_server_update_services_for_sap_solutions |
| redhat | enterprise_linux_update_services_for_sap_solutions |
| redhat | enterprise_linux_update_services_for_sap_solutions |
| redhat | enterprise_linux_workstation |
References
Other References
Frequently Asked Questions
What is CVE-2023-5455? +
How severe is CVE-2023-5455? +
What products are affected by CVE-2023-5455? +
How do I check if I'm vulnerable to CVE-2023-5455? +
Related Vulnerabilities
Masa CMS is a content management system forked from Mura CMS. In versions 7.5.2 and earlier, the `cTrash.restore` function does …
Masa CMS is a content management system forked from Mura CMS. In versions 7.5.2 and earlier, the cUsers.updateAddress function does …
Websites managed by MegaBIP in versions below 5.15 are vulnerable to Cross-Site Request Forgery (CSRF) as the form available under …
Emlog is an open source website building system. Prior to version 2.6.11, missing CSRF protection in critical admin functions allows …
Cross-site request forgery (CSRF) in NewsItemApiController in SimplCommerce prior to commit 6233d73e allows an unauthenticated remote attacker to create or …
Versions of Gliffy Online prior to versions 4.14.0-7 contains a Cross Site Request Forgery (CSRF) flaw.