Closed ramaraosrikakulapu closed 3 years ago
GE Digital Security Vulnerability Report [3702]
This is part of the security item or pen test result for EC product.
EC Service is sending EC_GRANT (“OK”) from the end point /v1beta/reports/usage endpoint even though agent sends invalid or wrong public key for validation.
/v1beta/reports/usage endpoint
Implemented and delivered part of Security Remediation Items project
GE Digital Security Vulnerability Report [3702]
This is part of the security item or pen test result for EC product.
EC Service is sending EC_GRANT (“OK”) from the end point
/v1beta/reports/usage endpoint
even though agent sends invalid or wrong public key for validation.