It was found that the Syndesis configuration for Cross-Origin Resource Sharing was set to allow all origins. An attacker could use this lack of protection to conduct phishing attacks and further access unauthorized information.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Fuse | Redhat | * | 7.5.0 (excluding) |
Syndesis | Redhat | - (including) | - (including) |
Red Hat Fuse 7.4.1 | RedHat | syndesis-server | * |
Red Hat Fuse 7.5.0 | RedHat | syndesis-server | * |