Fortinet Discovers Dell.com Subdomain Takeover Vulnerability
Fortinet's FortiGuard Labs has discovered a Dell.com subdomain takeover vulnerability.
Dell.com is part of Dell Technologies, an American multinational computer technology company. Dell Technologies was listed at number 35 in the Fortune 500 list for 2018.
The subdomain takeover vulnerability is caused by a misconfigured DNS entry. It exists because Dell.com is using the Microsoft Azure traffic manager, pointing one of its subdomains to an unregistered traffic manager domain. As a result, it can allow attackers to hijack cookies, bypass Cross-Origin Resource Sharing (CORS), bypass Content-Security Policies (CSP), cheat the password manager applications, intercept emails, etc. by registering the subdomain.
The vendor has patched the issue since 12/04/2018.
Fortinet reported the vulnerability to Dell on December 02, 2018.
Dell confirmed the vulnerability on December 04, 2018.
Dell patched the vulnerability on December 04, 2018.
This vulnerability was discovered by Zhouyuan Yang of Fortinet's FortiGuard Labs.