Описание
A Exposure of Resource to Wrong Sphere vulnerability in Rancher Desktop of SUSE allows attackers in the local network to connect to the Dashboard API (steve) to carry out arbitrary actions. This issue affects: SUSE Rancher Desktop versions prior to V.
Ссылки
- Issue TrackingThird Party Advisory
- Issue TrackingThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 1.2.1 (исключая)
cpe:2.3:a:suse:rancher_desktop:*:*:*:*:*:*:*:*
EPSS
Процентиль: 27%
0.00096
Низкий
8.3 High
CVSS3
8.8 High
CVSS3
5.8 Medium
CVSS2
Дефекты
CWE-668
CWE-668
EPSS
Процентиль: 27%
0.00096
Низкий
8.3 High
CVSS3
8.8 High
CVSS3
5.8 Medium
CVSS2
Дефекты
CWE-668
CWE-668