Описание
Red Hat OpenShift Enterprise before 2.2 does not properly restrict access to gears, which allows remote attackers to access the network resources of arbitrary gears via unspecified vectors.
Ссылки
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.1.8 (включая)
Одно из
cpe:2.3:a:redhat:openshift:*:*:*:*:enterprise:*:*:*
cpe:2.3:a:redhat:openshift:2.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openshift:2.0.1:*:enterprise:*:*:*:*:*
cpe:2.3:a:redhat:openshift:2.0.2:*:enterprise:*:*:*:*:*
cpe:2.3:a:redhat:openshift:2.0.3:*:enterprise:*:*:*:*:*
cpe:2.3:a:redhat:openshift:2.0.4:*:enterprise:*:*:*:*:*
cpe:2.3:a:redhat:openshift:2.0.5:*:enterprise:*:*:*:*:*
cpe:2.3:a:redhat:openshift:2.0.6:*:*:*:enterprise:*:*:*
cpe:2.3:a:redhat:openshift:2.1:*:*:*:enterprise:*:*:*
cpe:2.3:a:redhat:openshift:2.1.1:*:*:*:enterprise:*:*:*
cpe:2.3:a:redhat:openshift:2.1.2:*:*:*:enterprise:*:*:*
cpe:2.3:a:redhat:openshift:2.1.3:*:*:*:enterprise:*:*:*
cpe:2.3:a:redhat:openshift:2.1.4:*:*:*:enterprise:*:*:*
cpe:2.3:a:redhat:openshift:2.1.5:*:*:*:enterprise:*:*:*
cpe:2.3:a:redhat:openshift:2.1.6:*:*:*:enterprise:*:*:*
cpe:2.3:a:redhat:openshift:2.1.7:*:*:*:enterprise:*:*:*
EPSS
Процентиль: 67%
0.00542
Низкий
7.5 High
CVSS2
Дефекты
CWE-264
Связанные уязвимости
redhat
больше 11 лет назад
Red Hat OpenShift Enterprise before 2.2 does not properly restrict access to gears, which allows remote attackers to access the network resources of arbitrary gears via unspecified vectors.
github
больше 3 лет назад
Red Hat OpenShift Enterprise before 2.2 does not properly restrict access to gears, which allows remote attackers to access the network resources of arbitrary gears via unspecified vectors.
EPSS
Процентиль: 67%
0.00542
Низкий
7.5 High
CVSS2
Дефекты
CWE-264