Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6j4q-5h3q-823c

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Red Hat OpenShift Enterprise 3.2 does not properly restrict access to STI builds, which allows remote authenticated users to access the Docker socket and gain privileges via vectors related to build-pod.

Red Hat OpenShift Enterprise 3.2 does not properly restrict access to STI builds, which allows remote authenticated users to access the Docker socket and gain privileges via vectors related to build-pod.

EPSS

Процентиль: 72%
0.00736
Низкий

8.8 High

CVSS3

Связанные уязвимости

redhat
больше 9 лет назад

Red Hat OpenShift Enterprise 3.2 does not properly restrict access to STI builds, which allows remote authenticated users to access the Docker socket and gain privileges via vectors related to build-pod.

CVSS3: 8.8
nvd
больше 9 лет назад

Red Hat OpenShift Enterprise 3.2 does not properly restrict access to STI builds, which allows remote authenticated users to access the Docker socket and gain privileges via vectors related to build-pod.

EPSS

Процентиль: 72%
0.00736
Низкий

8.8 High

CVSS3