Impact
The vulnerability authentication check that permits anyone to call the get_orgs_v7 RPC function with any returns the target user’s organization membership, roles, management emails, and billing metadata. Because no identity verification is performed, an attacker can read confidential information about any user in the system, effectively exposing organizational structure and financial data.
Affected Systems
All Capgo platform releases prior to version 12.128.2 are affected. The vendor listed is Capgo by Capgo.
Risk and Exploitability
The CVSS score of 8.7 classifies the flaw as high severity, while the EPSS score than 1% indicates a low overall exploitation probability. Nevertheless, the endpoint is publicly accessible without authentication, making the attack trivial for attackers who can reach the RPC service. The vulnerability is not included in the CISA KEV catalog.
OpenCVE Enrichment