Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7g6j-5xq2-wgqv

Опубликовано: 22 сент. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 8

Описание

A flaw was found in Red Hat Single Sign-On for OpenShift container images, which are configured with an unsecured management interface enabled. This flaw allows an attacker to use this interface to deploy malicious code and access and modify potentially sensitive information in the app server configuration.

A flaw was found in Red Hat Single Sign-On for OpenShift container images, which are configured with an unsecured management interface enabled. This flaw allows an attacker to use this interface to deploy malicious code and access and modify potentially sensitive information in the app server configuration.

EPSS

Процентиль: 32%
0.00121
Низкий

8 High

CVSS3

Дефекты

CWE-276

Связанные уязвимости

CVSS3: 8
redhat
почти 3 года назад

A flaw was found in Red Hat Single Sign-On for OpenShift container images, which are configured with an unsecured management interface enabled. This flaw allows an attacker to use this interface to deploy malicious code and access and modify potentially sensitive information in the app server configuration.

CVSS3: 8
nvd
больше 2 лет назад

A flaw was found in Red Hat Single Sign-On for OpenShift container images, which are configured with an unsecured management interface enabled. This flaw allows an attacker to use this interface to deploy malicious code and access and modify potentially sensitive information in the app server configuration.

CVSS3: 8
debian
больше 2 лет назад

A flaw was found in Red Hat Single Sign-On for OpenShift container ima ...

CVSS3: 8
fstec
почти 3 года назад

Уязвимость программного средства для управления идентификацией и доступом Keycloak, связанная с настройками прав доступа по умолчанию, позволяющая нарушителю, действующему удаленно, выполнить произвольный код

EPSS

Процентиль: 32%
0.00121
Низкий

8 High

CVSS3

Дефекты

CWE-276