Описание
The OpenShift Enterprise 3 router does not properly sort routes when processing newly added routes. An attacker with access to create routes can potentially overwrite existing routes and redirect network traffic for other users to their own site.
Ссылки
- Third Party AdvisoryVDB EntryVendor Advisory
- Vendor Advisory
- Issue TrackingVendor Advisory
- Third Party AdvisoryVDB EntryVendor Advisory
- Vendor Advisory
- Issue TrackingVendor Advisory
Уязвимые конфигурации
Одно из
EPSS
6.3 Medium
CVSS3
7.7 High
CVSS3
4 Medium
CVSS2
Дефекты
Связанные уязвимости
The OpenShift Enterprise 3 router does not properly sort routes when processing newly added routes. An attacker with access to create routes can potentially overwrite existing routes and redirect network traffic for other users to their own site.
The OpenShift Enterprise 3 router does not properly sort routes when processing newly added routes. An attacker with access to create routes can potentially overwrite existing routes and redirect network traffic for other users to their own site.
EPSS
6.3 Medium
CVSS3
7.7 High
CVSS3
4 Medium
CVSS2