Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7g7m-r288-q7h8

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

Cloud Foundry Silk CNI plugin, versions prior to 0.2.0, contains an improper access control vulnerability. If the platform is configured with an application security group (ASG) that overlaps with the Silk overlay network, any applications can reach any other application on the network regardless of the configured routing policies.

Cloud Foundry Silk CNI plugin, versions prior to 0.2.0, contains an improper access control vulnerability. If the platform is configured with an application security group (ASG) that overlaps with the Silk overlay network, any applications can reach any other application on the network regardless of the configured routing policies.

EPSS

Процентиль: 56%
0.00332
Низкий

8.1 High

CVSS3

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 8.1
nvd
почти 8 лет назад

Cloud Foundry Silk CNI plugin, versions prior to 0.2.0, contains an improper access control vulnerability. If the platform is configured with an application security group (ASG) that overlaps with the Silk overlay network, any applications can reach any other application on the network regardless of the configured routing policies.

EPSS

Процентиль: 56%
0.00332
Низкий

8.1 High

CVSS3

Дефекты

CWE-732