Grafana is validating Azure AD accounts based on the email claim. On Azure AD, the profile email field is not unique and can be easily modified. This leads to account takeover and authentication bypass when Azure AD OAuth is configured with a multi-tenant app.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: GRAFANA

Published: 2023-06-22T20:14:00.805Z

Updated: 2024-08-02T06:48:07.347Z

Reserved: 2023-06-06T15:02:55.259Z

Link: CVE-2023-3128

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-06-22T21:15:09.573

Modified: 2023-07-21T19:19:27.410

Link: CVE-2023-3128

cve-icon Redhat

Severity : Moderate

Publid Date: 2023-06-22T00:00:00Z

Links: CVE-2023-3128 - Bugzilla