Description
It was possible to bypass policies configured for Zero Trust Secure Web Gateway by using warp-cli 'set-custom-endpoint' subcommand. Using this command with an unreachable endpoint caused the WARP Client to disconnect and allowed bypassing administrative restrictions on a Zero Trust enrolled endpoint.
No analysis available yet.
Remediation
Vendor Solution
Upgrade to specified patched versions.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Mon, 05 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: cloudflare
Published:
Updated: 2025-05-05T14:31:37.743Z
Reserved: 2022-09-26T16:40:57.968Z
Link: CVE-2022-3320
Updated: 2024-08-03T01:07:06.479Z
Status : Modified
Published: 2022-10-28T10:15:09.977
Modified: 2024-11-21T07:19:17.373
Link: CVE-2022-3320
No data.
OpenCVE Enrichment
No data.
Weaknesses