Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-6174

Опубликовано: 26 июн. 2025
Источник: nvd
CVSS3: 8.8
EPSS Низкий

Описание

When a non-x86 platform is detected, cloud-init grants root access to a hardcoded url with a local IP address. To prevent this, cloud-init default configurations disable platform enumeration.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:canonical:cloud-init:*:*:*:*:*:*:*:*
Версия до 25.1.3 (исключая)

EPSS

Процентиль: 13%
0.00042
Низкий

8.8 High

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 8.8
ubuntu
5 месяцев назад

When a non-x86 platform is detected, cloud-init grants root access to a hardcoded url with a local IP address. To prevent this, cloud-init default configurations disable platform enumeration.

CVSS3: 8.8
redhat
5 месяцев назад

When a non-x86 platform is detected, cloud-init grants root access to a hardcoded url with a local IP address. To prevent this, cloud-init default configurations disable platform enumeration.

CVSS3: 8.8
msrc
4 месяца назад

When a non-x86 platform is detected, cloud-init grants root access to a hardcoded url with a local IP address. To prevent this, cloud-init default configurations disable platform enumeration.

CVSS3: 8.8
debian
5 месяцев назад

When a non-x86 platform is detected, cloud-init grants root access to ...

CVSS3: 8.8
github
5 месяцев назад

When a non-x86 platform is detected, cloud-init grants root access to a hardcoded url with a local IP address. To prevent this, cloud-init default configurations disable platform enumeration.

EPSS

Процентиль: 13%
0.00042
Низкий

8.8 High

CVSS3

Дефекты

CWE-287