CVE-2024-27097

Potential log injection in reset user endpoint in ckan

A user endpoint didn't perform filtering on an incoming parameter, which was added directly to the application log. This could lead to an attacker injecting false log entries or corrupt the log file format. This has been fixed in the CKAN versions 2.9.11 and 2.10.4. Users are advised to upgrade. Users unable to upgrade should override the `/user/reset` endpoint to filter the `id` parameter in order to exclude newlines.


We have discovered 262 live websites that are affected by CVE-2024-27097.

Run a Free Instant Scan




Affected Software

Product  Ckan
Category Content Management System
Vulnerable Domains262 live websites (64% of Ckan install base)
Vulnerable Versions
  • from 2 through 2.9.11
  • from 2.10 through 2.10.4
Vulnerable Versions Count40 versions ( 77% of all versions)


Common Weakness Enumeration

CWE-532 Insertion of Sensitive Information into Log File



Details

  • Published - Mar 13, 2024
  • Updated - Aug 21, 2024

Website Distribution by Country

Number of websites using CVE-2024-27097
United States50 websites



Brazil29 websites
Italy25 websites
Argentina22 websites
Spain21 websites
Germany12 websites
France11 websites
Greece10 websites
Japan9 websites
Canada5 websites

Website Distribution by TLD

Number of websites using CVE-2024-27097
.org34 websites
.it23 websites
.es13 websites
.eu12 websites
.jp8 websites
.de7 websites
.fr5 websites
.ca5 websites
.com5 websites
.io3 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2024-27097

Top websites that are affected by CVE-2024-27097. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
****.***.ua Ukraine***,***
********.swiss United States***,***
****.***.ro Romania***,***
*****.***.ar Argentina***,***
****.*******.ca Canada***,***
*******.**.gov United States***,***
*******.***.gr Greece***,***
****.**************.it Italy***,***
***********.*****.***.br Brazil***,***
****.**************.it Italy***,***
See full domain list

FAQ

CVE-2024-27097 is Insertion of Sensitive Information into Log File in Ckan
A total of 262 websites have been identified as vulnerable to CVE-2024-27097, based on global website indexing conducted by WebTechSurvey.
The Ckan is affected by the CVE-2024-27097 vulnerability.
Ckan versions up to 2.10.4 are vulnerable to CVE-2024-27097.
CVE-2024-27097 is resolved in version 2.10.4 of Ckan.