Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-15138

Опубликовано: 13 авг. 2018
Источник: nvd
CVSS3: 5
CVSS2: 4
EPSS Низкий

Описание

The OpenShift Enterprise cluster-read can access webhook tokens which would allow an attacker with sufficient privileges to view confidential webhook tokens.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:redhat:openshift_container_platform:3.9:*:*:*:*:*:*:*

EPSS

Процентиль: 38%
0.00165
Низкий

5 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-200
CWE-200

Связанные уязвимости

CVSS3: 5
redhat
почти 8 лет назад

The OpenShift Enterprise cluster-read can access webhook tokens which would allow an attacker with sufficient privileges to view confidential webhook tokens.

CVSS3: 5
github
больше 3 лет назад

The OpenShift Enterprise cluster-read can access webhook tokens which would allow an attacker with sufficient privileges to view confidential webhook tokens.

EPSS

Процентиль: 38%
0.00165
Низкий

5 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-200
CWE-200