Researchers Disclose Details of Critical ‘CosMiss’ RCE Flaw Affecting Azure Cosmos DB

Teilen:

Microsoft on Tuesday said it addressed an authentication bypass vulnerability in Jupyter Notebooks for Azure Cosmos DB that enabled full read and write access.

The tech giant said the problem was introduced on August 12, 2022, and rectified worldwide on October 6, 2022, two days after responsible disclosure from Orca Security, which dubbed the flaw CosMiss.

“In short, if an attacker had knowledge of a Notebook’s ‘forwardingId,’ which is the UUID of the Notebook Workspace, they would have had full permissions on the Notebook without having to authenticate, including read and write access, and the ability to modify the file system of the container running the notebook,” researchers Lidor Ben Shitrit and Roee Sagi said.

This container modification could ultimately pave the way for obtaining remote code execution in the Notebook container by overwriting a Python file associated with the Cosmos DB Explorer to spawn a reverse shell.

 

Successful exploitation of the flaw, however, requires that the adversary is in possession of the unique 128-bit forwardingId and that it’s put to use within a one-hour window, after which the temporary Notebook is automatically deleted.

“The vulnerability, even with knowledge of the forwardingId, did not give the ability to execute notebooks, automatically save notebooks in the victim’s (optional) connected GitHub repository, or access to data in the Azure Cosmos DB account,” Redmond sagte.

Microsoft noted in its own advisory that it identified no evidence of malicious activity, adding no action is required from customers. It also described the issue as “difficult to exploit” owing to the randomness of the 128 bit forwadingID and its limited lifespan.

“Customers not using Jupyter Notebooks (99.8% of Azure Cosmos DB customers do NOT use Jupyter notebooks) were not susceptible to this vulnerability,” it further said.

https://thehackernews.com/2022/11/researchers-disclose-details-of.html?m=1

Kommentar verfassen

Deine E-Mail-Adresse wird nicht veröffentlicht. Erforderliche Felder sind mit * markiert

lade-bild
London, GB
12:42 am, Juli 8, 2025
Wetter-Symbol 16°C
L: 14° | H: 16°
aufgelockerte Bewölkung
Luftfeuchtigkeit: 67 %
Druck: 1014 mb
Wind: 3 mph NNW
Windböe: 5 mph
UV-Index: 0
Niederschlag: 0 mm
Wolken: 45%
Regen Chance: 0%
Sichtbarkeit: 10 km
Sonnenaufgang: 4:53 am
Sonnenuntergang: 9:17 pm
TäglichStündlich
Tägliche VorhersageStündliche Vorhersage
Today 10:00 pm
Wetter-Symbol
14° | 16°°C 0.34 mm 34% 11 mph 72 % 1019 mb 0 mm/h
Tomorrow 10:00 pm
Wetter-Symbol
15° | 26°°C 0.2 mm 20% 7 mph 65 % 1022 mb 0 mm/h
Do. Juli 10 10:00 pm
Wetter-Symbol
19° | 31°°C 0 mm 0% 6 mph 74 % 1023 mb 0 mm/h
Fr. Juli 11 10:00 pm
Wetter-Symbol
20° | 31°°C 0 mm 0% 10 mph 66 % 1022 mb 0 mm/h
Sa. Juli 12 10:00 pm
Wetter-Symbol
19° | 29°°C 0 mm 0% 10 mph 70 % 1020 mb 0 mm/h
Today 1:00 am
Wetter-Symbol
14° | 16°°C 0.2 mm 20% 11 mph 67 % 1014 mb 0 mm/h
Today 4:00 am
Wetter-Symbol
12° | 14°°C 0.34 mm 34% 11 mph 72 % 1014 mb 0 mm/h
Today 7:00 am
Wetter-Symbol
13° | 14°°C 0 mm 0% 10 mph 69 % 1015 mb 0 mm/h
Today 10:00 am
Wetter-Symbol
18° | 18°°C 0 mm 0% 9 mph 47 % 1017 mb 0 mm/h
Today 1:00 pm
Wetter-Symbol
23° | 23°°C 0 mm 0% 8 mph 33 % 1018 mb 0 mm/h
Today 4:00 pm
Wetter-Symbol
24° | 24°°C 0 mm 0% 7 mph 29 % 1017 mb 0 mm/h
Today 7:00 pm
Wetter-Symbol
24° | 24°°C 0 mm 0% 7 mph 29 % 1017 mb 0 mm/h
Today 10:00 pm
Wetter-Symbol
20° | 20°°C 0 mm 0% 5 mph 41 % 1019 mb 0 mm/h
Name Preis24H (%)
Bitcoin(BTC)
€92,248.36
-0.80%
Ethereum(ETH)
€2,167.08
-0.95%
Fesseln(USDT)
€0.85
-0.01%
XRP(XRP)
€1.94
0.35%
Solana(SOL)
€126.69
-2.05%
USDC(USDC)
€0.85
0.01%
Dogecoin(DOGE)
€0.142787
-2.37%
Shiba Inu(SHIB)
€0.000010
-1.50%
Pepe(PEPE)
€0.000009
-1.43%
Nach oben scrollen