Impact
Capgo before version 12.128.2 has a privilege escalation flaw that allows a user who has been demoted from the super_admin role to retain access to the delete_non_compliant_bundles and count_non_compliant_bundles RPCs. This occurs because the org_users.user_right column is not cleared when a role binding is deleted, leaving stale privileges. As a result, an attacker can continuously enumerate and bulk delete non‑compliant bundles across the organization.
Affected Systems
The vulnerability affects Capgo installations that run any version earlier than 12.128.2. It specifically impacts the Capgo application hosted under the Capgo:Capgo product line.
Risk and Exploitability
The CVSS score of 7.2 reflects moderate to high risk. The EPSS score of < 1% indicates a very low probability of exploitation in the wild, and the vulnerability is not listedV catalog. The likely attack vector requires an account that has been demoted from super_admin but still retains legacy rights. An attacker can leverage these stale privileges to enumerate and bulk delete non‑compliant bundles across the organization, compromising data integrity.
OpenCVE Enrichment