Connectwise Control 22.8.10013.8329 is vulnerable to Cross Origin Resource Sharing (CORS). The vendors position is that two endpoints have Access-Control-Allow-Origin wildcarding to support product functionality, and that there is no risk from this behavior. The vulnerability report is thus not valid.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Connectwise | Connectwise | 22.8.10013.8329 (including) | 22.8.10013.8329 (including) |