Описание
In Rancher 2.0.0 through 2.1.5, project members have continued access to create, update, read, and delete namespaces in a project after they have been removed from it.
Ссылки
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 2.0.0 (включая) до 2.1.5 (включая)
cpe:2.3:a:suse:rancher:*:*:*:*:*:*:*:*
EPSS
Процентиль: 39%
0.00172
Низкий
8.1 High
CVSS3
6.5 Medium
CVSS2
Дефекты
CWE-269
Связанные уязвимости
CVSS3: 8.1
github
больше 3 лет назад
Rancher Project Members Have Continued Access to Namespaces After Being Removed From Them
EPSS
Процентиль: 39%
0.00172
Низкий
8.1 High
CVSS3
6.5 Medium
CVSS2
Дефекты
CWE-269