wiz-sec / open-cvdb

An open project to list all publicly known cloud vulnerabilities and CSP security issues
https://cloudvulndb.org
Creative Commons Attribution 4.0 International
306 stars 61 forks source link

[Contribution] Add Secureworks Power Platform privesc #212

Open korniko98 opened 1 year ago

korniko98 commented 1 year ago

Summary (give a brief description of the issue)

In early 2023, Secureworks discovered an Azure AD application related to Microsoft Power Platform with an abandoned reply URL address. An attacker could leverage this abandoned URL to redirect authorization codes to themselves, exchanging the ill-gotten authorization codes for access tokens. The threat actor could then call Power Platform API via a middle-tier service and obtain elevated privileges.

References (provide links to blogposts, etc.)

https://www.secureworks.com/research/power-platform-privilege-escalation