CVE-2023-43791
Label Studio has Hardcoded Django `SECRET_KEY` that can be Abused to Forge Session Tokens
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
Label Studio is a multi-type data labeling and annotation tool with standardized output format. There is a vulnerability that can be chained within the ORM Leak vulnerability to impersonate any account on Label Studio. An attacker could exploit these vulnerabilities to escalate their privileges from a low privilege user to a Django Super Administrator user. The vulnerability was found to affect versions before `1.8.2`, where a patch was introduced.
Label Studio es una herramienta de anotación y etiquetado de datos de varios tipos con formato de salida estandarizado. Existe una vulnerabilidad que se puede encadenar dentro de la vulnerabilidad ORM Leak para hacerse pasar por cualquier cuenta en Label Studio. Un atacante podría aprovechar estas vulnerabilidades para escalar sus privilegios de un usuario con permisos bajos a un usuario súper administrador de Django. Se descubrió que la vulnerabilidad afectaba a versiones anteriores a la "1.8.2", donde se introdujo un parche.
CVSS Scores
SSVC
- Decision:Attend
Timeline
- 2023-09-22 CVE Reserved
- 2023-11-09 CVE Published
- 2024-09-03 CVE Updated
- 2024-09-03 First Exploit
- 2024-11-15 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
CAPEC
References (4)
URL | Tag | Source |
---|---|---|
https://github.com/HumanSignal/label-studio/releases/tag/1.8.2 | Release Notes |
URL | Date | SRC |
---|---|---|
https://github.com/HumanSignal/label-studio/security/advisories/GHSA-f475-x83m-rx5m | 2024-09-03 |
URL | Date | SRC |
---|---|---|
https://github.com/HumanSignal/label-studio/commit/3d06c5131c15600621e08b06f07d976887cde81b | 2023-11-18 | |
https://github.com/HumanSignal/label-studio/pull/4690 | 2023-11-18 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Humansignal Search vendor "Humansignal" | Label Studio Search vendor "Humansignal" for product "Label Studio" | < 1.8.2 Search vendor "Humansignal" for product "Label Studio" and version " < 1.8.2" | - |
Affected
|