Azure Cosmos DB의 취약점이 모든 데이터베이스에 접근할 수 있는 키를 노출시킬 수 있었다.
Azure Cosmos DB에 존재하던 취약점이 서비스의 Gremlin 쿼리 샌드박스를 우회해 고객 테넌트의 데이터베이스에 대한 전체 읽기 및 쓰기 접근을 가능하게 했다. Wiz는 이 공격 경로를 CosmosEscape라고 명명하며, 공격자가 제어하는 Gremlin 데이터베이스에 대한 조작된 쿼리로 시작해 코드 실행이 이어졌다고 밝혔다. 이 취약점은 현재 패치되었다.
A vulnerability in Azure Cosmos DB could have exposed access keys to all databases.
A now-patched vulnerability in Azure Cosmos DB could have allowed an attacker to escape the service's Gremlin query sandbox and gain full read and write access to databases across customer tenants. The exploit chain, termed CosmosEscape by Wiz, began with a crafted query against a Gremlin database controlled by the attacker, leading to code execution. This vulnerability has since been addressed.