Описание
Due to insufficient verification, an attacker could use a malicious client to bypass authentication checks and run RPC commands in a region. This has been addressed in MAAS and updated in the corresponding snaps.
Ссылки
- ExploitIssue TrackingPatch
Уязвимые конфигурации
Одно из
EPSS
9.6 Critical
CVSS3
9.8 Critical
CVSS3
Дефекты
Связанные уязвимости
Due to insufficient verification, an attacker could use a malicious client to bypass authentication checks and run RPC commands in a region. This has been addressed in MAAS and updated in the corresponding snaps.
Due to insufficient verification, an attacker could use a malicious client to bypass authentication checks and run RPC commands in a region. This has been addressed in MAAS and updated in the corresponding snaps.
Уязвимость механизма аутентификации системы управления серверами MAAS, позволяющая нарушителю повысить свои привилегии и выполнить произвольный код
EPSS
9.6 Critical
CVSS3
9.8 Critical
CVSS3