CyberSectr
Menü
← CVE Veritabanı

CVE-2026-84718

Orta

Teknik Veri (Otomatik)

CVSS Skoru
4.3
EPSS
CWE
CWE-348
KEV Durumu
Hayır

Ansible Automation Platform automation-controller'de bir zayıflık bulundu. Üretim konfigürasyonunda, Kontrolör, istemci tarafından sağlanan X-Forwarded-For başlığının, güvenilir bir ara sunucudan geldiğinden emin olmadan, isteğin istemci IP'si olarak güvendiği ve en soldaki (saldırgan tarafından kontrol edilen) başlık değerini seçer. Sonuç olarak, bir saldırgan, Kontrolör'ün denetim ve erişim günlüklerinde kendi isteklerinin kaynak IP adresini sahte olabilir ve bu da adli ve SIEM atama bütünlüğünü bozar. Zayıflık, ek erişim sağlamaz.

Orijinal açıklama (İngilizce)

A flaw was found in the Ansible Automation Platform automation-controller. In the shipped production configuration, the Controller trusts the client-supplied X-Forwarded-For header as the request's client IP without verifying that it originated from a trusted proxy, and selects the leftmost (attacker-controlled) header value. As a result, an attacker can forge the source IP address recorded for their requests in the Controller's audit and access logs, degrading the integrity of forensic and SIEM attribution. The flaw does not grant additional access.

Bu CVE için henüz editoryal inceleme yapılmadı. Sadece otomatik teknik veri gösteriliyor.