THREATPORT/VULNERABILITY/CVE-2022-37109
CRITICAL SEVERITY

CVE-2022-37109

Camp vulnerability

CVSS
9.8
EPSS
49.2%
EPSS pct
99th
Exploited
No known
patrickfuller camp up to and including commit bbd53a256ed70e79bd8758080936afbf6d738767 is vulnerable to Incorrect Access Control. Access to the password.txt file is not properly restricted as it is in the root directory served by StaticFileHandler and the Tornado rule to throw a 403 error when password.txt is accessed can be bypassed. Furthermore, it is not necessary to crack the password hash to authenticate with the application because the password hash is also used as the cookie secret, so an attacker can generate his own authentication cookie.
Affected vendor
Camp Project
Affected product
Camp
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weakness type (CWE)
  • CWE-522 — Insufficiently Protected Credentials
Published
2022-11-14

Risk analysis

Based on its CVSS vector, this vulnerability is exploitable over the network, low attack complexity, requiring no privileges, no user interaction. Successful exploitation leads to high impact to confidentiality, high impact to integrity, high impact to availability.

Its EPSS score of 49.2% reflects a moderate probability of exploitation activity in the wild over the next 30 days, placing it among the most exploited CVEs currently tracked.

Check your external exposure to CVE-2022-37109

  • Confirm whether Camp Project Camp is running on any internet-facing host or subdomain.
  • Match discovered service fingerprints against the version affected by CVE-2022-37109.
  • Prioritise remediation if the asset is public, business-critical, or near authentication/payment flows.

How ThreatPort helps with CVE-2022-37109

ThreatPort's external attack surface scanner checks your internet-facing assets — agentlessly, from the outside in — for the exposed services and versions that CVE-2022-37109 affects, then prioritises the finding by real risk using CISA KEV and FIRST.org EPSS.

Run a free external exposure scan

Are you exposed to CVE-2022-37109?

Run an instant, non-intrusive external scan to check your attack surface for CVE-2022-37109.

Start free scan

No credit card. Agentless.