Horizon Alert
Summary of the vulnerability and why it matters
This advisory concerns a critical vulnerability in Browsertrix, a web archiving service. The flaw allows unauthorized command execution through a specific API endpoint when handling Git URLs in custom configurations. This could potentially expose, modify, or delete sensitive application data.
- A security flaw allows unauthorized command execution.
- It affects web archiving services and data.
- Confirm relevance and exposure of the service.
Attack Path
How an attacker could exploit the issue
An attacker could exploit this vulnerability by sending a specially crafted Git URL to an API endpoint in the Browsertrix crawling service. This endpoint is designed to validate custom behaviors for crawls. If an attacker can get a user with crawler or administrator permissions to trigger this validation, the malicious Git URL can be used to execute arbitrary commands on the server. This is particularly concerning because open registration or free trial access could make it easier for attackers to obtain the necessary permissions.
- Requires crawler or administrator permission.
- Triggered by validating a custom behavior.
- Risk of arbitrary code execution and data compromise.
Live Threat
Current exploitation, exposure, and threat context
When supported by the advisory, an authenticated user with crawler or administrator permissions could leverage a flaw in how the service handles Git URLs within custom behaviors to execute arbitrary operating system commands on the backend. This could affect application data, archived items, and configured service information.
- Application database records.
- Commands injected via crafted Git URLs.
- Data exposure, modification, or deletion.
Operational Fix
Recommended remediation, mitigation, and detection steps
The application owner is responsible for addressing this critical vulnerability in Browsertrix. The first practical step is to identify all instances of the affected service, confirm their exposure and business criticality, and then engage the appropriate team for remediation.
- Application owners should manage this issue.
- Verify all instance exposures and criticality.
- Plan and coordinate remediation efforts.