Описание
Openshift 4.9 does not use HTTP Strict Transport Security (HSTS) which may allow man-in-the-middle (MITM) attacks.
Ссылки
- Issue TrackingThird Party Advisory
- Issue TrackingThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:redhat:openshift:4.9:*:*:*:*:*:*:*
EPSS
Процентиль: 27%
0.00096
Низкий
7.4 High
CVSS3
Дефекты
CWE-665
Связанные уязвимости
CVSS3: 7.4
redhat
больше 3 лет назад
Openshift 4.9 does not use HTTP Strict Transport Security (HSTS) which may allow man-in-the-middle (MITM) attacks.
CVSS3: 7.4
github
около 3 лет назад
Openshift 4.9 does not use HTTP Strict Transport Security (HSTS) which may allow man-in-the-middle (MITM) attacks.
EPSS
Процентиль: 27%
0.00096
Низкий
7.4 High
CVSS3
Дефекты
CWE-665