Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-6174

Опубликовано: 26 июн. 2025
Источник: nvd
CVSS3: 8.8
EPSS Низкий

Описание

When a non-x86 platform is detected, cloud-init grants root access to a hardcoded url with a local IP address. To prevent this, cloud-init default configurations disable platform enumeration.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:canonical:cloud-init:*:*:*:*:*:*:*:*
Версия до 25.1.3 (исключая)

EPSS

Процентиль: 11%
0.00205
Низкий

8.8 High

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 1 года назад

When a non-x86 platform is detected, cloud-init grants root access to a hardcoded url with a local IP address. To prevent this, cloud-init default configurations disable platform enumeration.

CVSS3: 8.8
redhat
около 1 года назад

When a non-x86 platform is detected, cloud-init grants root access to a hardcoded url with a local IP address. To prevent this, cloud-init default configurations disable platform enumeration.

CVSS3: 8.8
msrc
около 1 года назад

When a non-x86 platform is detected, cloud-init grants root access to a hardcoded url with a local IP address. To prevent this, cloud-init default configurations disable platform enumeration.

CVSS3: 8.8
debian
около 1 года назад

When a non-x86 platform is detected, cloud-init grants root access to ...

rocky
2 месяца назад

Important: cloud-init security update

EPSS

Процентиль: 11%
0.00205
Низкий

8.8 High

CVSS3

Дефекты

CWE-287