Impact
The vulnerability allows an attacker to bypass authentication and access CentreStack’s exposed API endpoints. By forging encrypted EntAcctId values with the static shared encryption key, an unauthenticated adversary can read, write or delete any account settings, including system‑wide cluster settings. This could lead to the compromise of tenant domains, the exposure of administrator identities, and widespread disruption of service.
Affected Systems
CentreStack versions prior to 17.2 from Gladinet are affected. All releases older than 17.2 contain the flaw, as the exposed API endpoints lack proper authorization checks.
Risk and Exploitability
The CVSS score of 8.8 indicates a high severity. This vulnerability is classified as CWE-306, implying an authentication bypass flaw. The EPSS score of <1% shows a very low but nonzero probability that the vulnerability is being exploited. The exploit requires only the ability to request the API endpoint and knowledge of the static encryption key, which, based on the description, is inferred to be publicly accessible. The flaw is not listed in the CISA KEV catalog. An unauthenticated attacker can enumerate tenant domains and administrator accounts, providing a foothold for broader attacks.
OpenCVE Enrichment