Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f827-q6f2-jc9c

Опубликовано: 26 окт. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

Secret token configuration is never applied when using ECK <2.8 with APM Server >=8.0. This could lead to anonymous requests to an APM Server being accepted and the data ingested into this APM deployment.

Secret token configuration is never applied when using ECK <2.8 with APM Server >=8.0. This could lead to anonymous requests to an APM Server being accepted and the data ingested into this APM deployment.

EPSS

Процентиль: 41%
0.00195
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 5.3
nvd
больше 2 лет назад

Secret token configuration is never applied when using ECK <2.8 with APM Server >=8.0. This could lead to anonymous requests to an APM Server being accepted and the data ingested into this APM deployment.

EPSS

Процентиль: 41%
0.00195
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-200