cve/2024/CVE-2024-8260.md
2024-08-31 19:52:39 +00:00

830 B
Raw Permalink Blame History

CVE-2024-8260

Description

A SMB force-authentication vulnerability exists in all versions of OPA for Windows prior to v0.68.0. The vulnerability exists because of improper input validation, allowing a user to pass an arbitrary SMB share instead of a Rego file as an argument to OPA CLI or to one of the OPA Go librarys functions.

POC

Reference

No PoCs from references.

Github