Description
Consul is a service networking solution to automate network configurations, discover services, and enable secure connectivity across any cloud or runtime. Consul API is designed to be accessed inside trusted environments. It's not recommended to have Consul API publicly accessible.
Remediation
It's recommended to restrict access to this service on production systems
References
Related Vulnerabilities
WordPress Plugin GiveWP-Donation and Fundraising Platform Information Disclosure (2.20.2)
Roundcube Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-19205)
Unrestricted access to Caddy API interface
Squid Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2019-12528)