VDB

GCVE-110-CLOUD-2023-0047

GCVE-110-CLOUD-2023-0047
Advisory Published
Vulnetix · Advisory published March 19, 2023
Due to an exposed development endpoint, it was possible to bypass CloudTrail logging for both read and write API actions for the Service Catalog service. This could have enabled adversaries to alter Service Catalog resources undetected after gaining a foothold in a victim AWS environment.

Affected Products

VendorProductVersionsPlatforms
AWSCloud Services
AWSService Catalog
AWSCloudTrail

References

advisory

Browse GCVE Records

74,267 records in the GCVE database · Updated July 22, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›