services / Azure / Application Gateway listener certificate metadata
Returns metadata about the TLS certificate bound to an application gateway listener.
Read-only reconnaissance action inherited from the application gateway's HIGH scope.
Microsoft.Network/applicationGateways/getListenerCertificateMetadata/action
Discloses which TLS certificate/domain is bound to a listener, revealing which applications are fronted by the gateway and aiding targeting of a subsequent attack.
Risks
Scope: HIGH
This privilege may grant access to sensitive data from a single organizational function, or allow interruption of a service supporting a single organizational function.
Links
Contributed by P0 Security
© 2023–present P0 Security and contributors to the IAM Privilege Catalog