CVE-2023-37265
Incorrect identification of source IP addresses in CasaOS
Record summary
CVE-2023-37265 has a selected CVSS score of 9.8 (critical); EIP currently links 1 Nuclei template.
Description
CasaOS is an open-source Personal Cloud system. Due to a lack of IP address verification an unauthenticated attackers can execute arbitrary commands as `root` on CasaOS instances. The problem was addressed by improving the detection of client IP addresses in `391dd7f`. This patch is part of CasaOS 0.4.4. Users should upgrade to CasaOS 0.4.4. If they can't, they should temporarily restrict access to CasaOS to untrusted users, for instance by not exposing it publicly.
Exploitation context
Available material
- Nuclei templates
- 1
CISA SSVC decision
CISA Coordinator · SSVC 2.0.3 · Evaluated Oct 10, 2024 · Source: CVE List
Affected products and versions
3| Product | Source | Version range | Status |
|---|---|---|---|
CasaOS-GatewayBrowse IceWhaleTech / CasaOS-Gateway | CVE List | < 0.4.4 | affected |
casaos-gatewayBrowse icewhale / casaos-gatewayDefault status: unknown | CVE List | Before 0.4.4 | affected |
github.com/IceWhaleTech/CasaOS-GatewayBrowse Go / github.com/IceWhaleTech/CasaOS-Gateway | GitHub Advisory | Before 0.4.4 · Fixed in 0.4.4 | affected |
Nuclei templates
1ProjectDiscoveryCRITICALCasaOS < 0.4.4 - Authentication Bypass via Internal IPCVSS 9.8
CasaOS is an open-source Personal Cloud system. Due to a lack of IP address verification an unauthenticated attackers can execute arbitrary commands as `root` on CasaOS instances. The problem was addressed by improving the detection of client IP addresses in `391dd7f`. This patch is part of CasaOS 0.4.4. Users should upgrade to CasaOS 0.4.4. If they can't, they should temporarily restrict access to CasaOS to untrusted users, for instance by not exposing it publicly.
Impact
Successful exploitation allows unauthorized access to the CasaOS system.
Remediation
The problem was addressed by improving the detection of client IP addresses in 391dd7f. This patch is part of CasaOS 0.4.4.
Source: ProjectDiscovery