Property
Languagehcl
Severitylow
CWECWE-284: Improper Access Control
OWASPA05:2017 - Broken Access Control
Confidence LevelLow
Impact LevelLow
Likelihood LevelLow

Description#

The Azure Data Factory resource is configured with public network access enabled, which allows connections from the internet. This exposes the service to unauthorized users and increases the risk of external attacks.

Impact#

If public network access is not disabled, attackers could attempt to access, manipulate, or exfiltrate data from your Data Factory instance over the internet. This could lead to data breaches, unauthorized data processing, or compromise of sensitive workflows.