Novel Exploit for Authentication Bypass in Nacos (Alibaba) (CVE-2021-29442)

Novel Exploit for Authentication Bypass in Nacos (Alibaba) (CVE-2021-29442)

OS

2024.1.*
2020.3.*
2019.4.*

Apps

N
NacosAlibaba
0.5.0.*
0.3.0.RC1
0.3.0.-
1.4.2.*
0.8.0.*
1.1.3.*
0.6.1.*
2.0.3.*
0.7.0.*
0.9.0.*

Screenshots from the blog posts

images/clzqngi422qrf1in980k45zpx.pngimages/clzqngi422qrf1in980k45zpx.png

Summary

In this post, we will understand the authorization bypass exploit for (Alibaba) Nacos (CVE-2021-29442) and leverage it to exploit vulnerable targets.

general

Description

@secatgourity

190 posts

Total vcoins

0

Social media links

Comments (0)