Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5mjc-xm4w-8h63

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.5

Описание

In Windows Stemcells versions prior to 1200.14, apps running inside containers in Windows on Google Cloud Platform are able to access the metadata endpoint. A malicious developer could use this access to gain privileged credentials.

In Windows Stemcells versions prior to 1200.14, apps running inside containers in Windows on Google Cloud Platform are able to access the metadata endpoint. A malicious developer could use this access to gain privileged credentials.

EPSS

Процентиль: 53%
0.00302
Низкий

8.5 High

CVSS3

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 8.5
nvd
почти 8 лет назад

In Windows Stemcells versions prior to 1200.14, apps running inside containers in Windows on Google Cloud Platform are able to access the metadata endpoint. A malicious developer could use this access to gain privileged credentials.

EPSS

Процентиль: 53%
0.00302
Низкий

8.5 High

CVSS3

Дефекты

CWE-732