CVE-2023-2816 is a medium-severity vulnerability affecting HashiCorp Consul and Consul Enterprise, where users with service:write permissions can exploit Envoy extensions to patch remote proxy instances. This allows unauthorized modification of proxies targeting services, even without direct permission to alter those services. The CVSS score is 6.5, indicating a network-based attack with low complexity and authentication required, leading to a high impact on integrity. Currently, there is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 1.15.0, < 1.15.3CPE matchmatch criteria | cpe:2.3:a:hashicorp:consul:*:*:*:*:-:*:*:* | ||
>= 1.15.0, < 1.15.3CPE matchmatch criteria | cpe:2.3:a:hashicorp:consul:*:*:*:*:enterprise:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
CVE-2023-2816
Jun 11, 2024Consul Envoy Extension Downsteam Proxy Configuration By Upstream Service Owner
Jun 13, 2023Hashicorp Consul allows user with service:write permissions to patch remote proxy instances
Jun 3, 2023