Facebook Google Plus Twitter LinkedIn YouTube RSS Menu Search Resource - BlogResource - WebinarResource - ReportResource - Eventicons_066 icons_067icons_068icons_069icons_070

User Enumeration in GSuite Okta Integration

Low

Synopsis

Steps to reproduce: 1. Go to gmail.com login endpoint. 2. Attempt to login with a corporate email account using Okta SSO integration. In our case, [email protected]. 3. If the username is valid, a redirect to the Okta SSO page will happen. If not, an error saying "Invalid username" will appear. Based on these results from Step 3, users for a given corporation can be enumerated. To note: We are fully aware that user-enumeration vulnerabilities are typically considered out-of-scope / low priority for most vulnerability remediation teams, but given that this can be targeted to specific organizations using this particular integration, we figured we'd make the disclosure anyway.

Solution

No solution or known mitigation is available.

Disclosure Timeline

August 16, 2021 - Tenable discloses to vendor. Vendor supplies automated acknowledgment.
August 18, 2021 - Vendor states that this does not meet their criteria for security updates.

All information within TRA advisories is provided “as is”, without warranty of any kind, including the implied warranties of merchantability and fitness for a particular purpose, and with no guarantee of completeness, accuracy, or timeliness. Individuals and organizations are responsible for assessing the impact of any actual or potential security vulnerability.

Tenable takes product security very seriously. If you believe you have found a vulnerability in one of our products, we ask that you please work with us to quickly resolve it in order to protect customers. Tenable believes in responding quickly to such reports, maintaining communication with researchers, and providing a solution in short order.

For more details on submitting vulnerability information, please see our Vulnerability Reporting Guidelines page.

If you have questions or corrections about this advisory, please email [email protected]

Risk Information

Tenable Advisory ID: TRA-2021-35
Affected Products:
Gmail / Okta Single Sign On Integration
Risk Factor:
Low

Advisory Timeline

August 19, 2021 - Initial release.

Tenable Vulnerability Management

Enjoy full access to a modern, cloud-based vulnerability management platform that enables you to see and track all of your assets with unmatched accuracy.

Your Tenable Vulnerability Management trial also includes Tenable Lumin and Tenable Web App Scanning.

Tenable Vulnerability Management

Enjoy full access to a modern, cloud-based vulnerability management platform that enables you to see and track all of your assets with unmatched accuracy. Purchase your annual subscription today.

100 assets

Choose your subscription option:

Buy Now

Tenable Vulnerability Management

Enjoy full access to a modern, cloud-based vulnerability management platform that enables you to see and track all of your assets with unmatched accuracy.

Your Tenable Vulnerability Management trial also includes Tenable Lumin and Tenable Web App Scanning.

Tenable Vulnerability Management

Enjoy full access to a modern, cloud-based vulnerability management platform that enables you to see and track all of your assets with unmatched accuracy. Purchase your annual subscription today.

100 assets

Choose your subscription option:

Buy Now