Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-25743

Опубликовано: 07 янв. 2022
Источник: nvd
CVSS3: 3
CVSS2: 2.1
EPSS Низкий

Описание

kubectl does not neutralize escape, meta or control sequences contained in the raw data it outputs to a terminal. This includes but is not limited to the unstructured string fields in objects such as Events.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:kubernetes:kubernetes:*:*:*:*:*:*:*:*
Версия до 1.25.0 (включая)
cpe:2.3:a:kubernetes:kubernetes:1.26.0:alpha.0:*:*:*:*:*:*
cpe:2.3:a:kubernetes:kubernetes:1.26.0:alpha.1:*:*:*:*:*:*
cpe:2.3:a:kubernetes:kubernetes:1.26.0:alpha.2:*:*:*:*:*:*

EPSS

Процентиль: 57%
0.00353
Низкий

3 Low

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-150
NVD-CWE-Other

Связанные уязвимости

CVSS3: 3
ubuntu
почти 4 года назад

kubectl does not neutralize escape, meta or control sequences contained in the raw data it outputs to a terminal. This includes but is not limited to the unstructured string fields in objects such as Events.

CVSS3: 3
redhat
почти 4 года назад

kubectl does not neutralize escape, meta or control sequences contained in the raw data it outputs to a terminal. This includes but is not limited to the unstructured string fields in objects such as Events.

CVSS3: 3
debian
почти 4 года назад

kubectl does not neutralize escape, meta or control sequences containe ...

suse-cvrf
около 1 года назад

Security update for kubernetes1.25

suse-cvrf
около 1 года назад

Security update for kubernetes1.24

EPSS

Процентиль: 57%
0.00353
Низкий

3 Low

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-150
NVD-CWE-Other