Horizon Alert
Summary of the vulnerability and why it matters
This advisory concerns a vulnerability in Dokploy, a self-hosted Platform as a Service. The issue allows unauthorized command execution on other tenants' servers if an attacker has read permissions, potentially impacting the integrity and availability of hosted services. The main concern is confirming relevance and exposure.
- Unauthorized server command execution is possible.
- Affects multi-tenant PaaS deployment integrity.
- Confirm if this self-hosted service is in use.
Attack Path
How an attacker could exploit the issue
An attacker with read permissions can exploit this vulnerability by making unauthorized API calls to specific Dokploy endpoints. By manipulating requests to access information from another organization's server, the attacker can trick the system into executing arbitrary commands on a tenant's server. This could lead to complete compromise of the affected server and its data.
- Requires server:read permission.
- Invokes API endpoints with malformed requests.
- Full remote command execution and data compromise.
Live Threat
Current exploitation, exposure, and threat context
A low-privileged user could potentially execute arbitrary commands on another organization's server when the Dokploy PaaS is improperly configured. This could impact the integrity and confidentiality of the affected server, potentially leading to service disruption or unauthorized access to data.
- Server commands could be executed.
- Unauthorized access to other tenants' servers.
- Compromise of system integrity and data.
Operational Fix
Recommended remediation, mitigation, and detection steps
Platform-as-a-Service (PaaS) solutions like Dokploy are typically managed by platform or infrastructure teams, with security teams responsible for network access and vendor management if applicable. The immediate first step is to confirm the presence of Dokploy within your environment, assess its exposure and criticality, identify the accountable asset owner, and then prioritize remediation actions.
- Platform/Infrastructure owns remediation.
- Verify Dokploy deployment and reachability.
- Plan maintenance for upgrade.