←Back to Bulletins
CloudEdge Configuration Center Information Disclosure Vulnerability
Summary :
The CloudEdge Configuration Center exposes a limited amount of configuration information.
CVSS (Base Score):
9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Attack Conditions:
Attackers can discover externally exposed configuration center ports through network scanning and directly access application configuration data.
Risk:
This issue may expose a small amount of configuration information.
Impact Scope:
This vulnerability affects a limited subset of application configuration data in the CloudEdge Configuration Center service.
Remediation Steps:
The exposed configuration data has been corrected, and public network access to the affected service ports has been restricted.