Uploaded image for project: 'ONAP JIRA Security Issues'
  1. ONAP JIRA Security Issues
  2. OJSI-203

SO exposes unprotected APIs/UIs (CVE-2019-12128)

CloneClone+Clone++
    XMLWordPrintable

Details

    • CVE-2019-12128
    • Hide

      Title: Unprotected APIs/UIs exposed in SO project

      Reporter: Jakub Botwicz,  Wojciech Rauner, Łukasz Wrochna and Radosław Żeszczuk from Samsung

      Products: SO

      Affects: Dublin and earlier

      Description:

      Jakub Botwicz, Wojciech Rauner, Łukasz Wrochna and Radosław Żeszczuk from Samsung reported a vulnerability in ONAP SO. By accessing port 30224, an attacker gains full access to the respective ONAP service without any authentication. All ONAP OOM setups are affected.

      Show
      Title: Unprotected APIs/UIs exposed in SO project Reporter: Jakub Botwicz,  Wojciech Rauner, Łukasz Wrochna and Radosław Żeszczuk from Samsung Products: SO Affects: Dublin and earlier Description: Jakub Botwicz, Wojciech Rauner, Łukasz Wrochna and Radosław Żeszczuk from Samsung reported a vulnerability in ONAP SO. By accessing port 30224, an attacker gains full access to the respective ONAP service without any authentication. All ONAP OOM setups are affected.
    • OJSI-SO

    Description

       

       

      Attachments

        Issue Links

          # Subject Branch Project Status CR V

          Activity

            People

              kopasiak Krzysztof Opasiak
              kopasiak Krzysztof Opasiak
              Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: