Microsoft Defender reports High attack paths for Azure TRE Guacamole Web Apps #5042
Ansar Rafique (ansarrafique)
started this conversation in
General
Replies: 1 comment 1 reply
|
Hi Ansar, We are running v0.28.0 and our Defender for Cloud is not listing anything other than low severity component upgrades for guacamole. Are you able to upgrade your TRE version and the guacamole service to see if that resolves the issue? |
1 reply
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
We are running Azure TRE v0.27.0 and use Microsoft Defender for Cloud to monitor the environment. Defender is currently reporting three High-severity attack paths for the Guacamole Web Apps:
Internet exposed Azure Web App with high severity vulnerabilitiesThe attack path is:
Internet → Guacamole Web AppDefender reports high-severity vulnerabilities in the internet-facing Guacamole Web Apps.
I understand that Guacamole is expected to be internet-facing, but I would like to understand how concerning these vulnerabilities are.
Specifically, I would appreciate it if you could please provide some guidance on the following:
I would prefer to follow the upstream Azure TRE approach rather than maintain local changes if possible.
All reactions