Описание
A flaw was found in fog-kubevirt. This vulnerability allows a remote attacker to perform a Man-in-the-Middle (MITM) attack due to disabled certificate validation. This enables the attacker to intercept and potentially alter sensitive communications between Satellite and OpenShift, resulting in information disclosure and data integrity compromise.
EPSS
Процентиль: 4%
0.00019
Низкий
8.1 High
CVSS3
Дефекты
CWE-295
Связанные уязвимости
CVSS3: 8.1
github
5 дней назад
fog-kubevirt allows remote attacker to perform MITM attack due to disabled certificate validation
EPSS
Процентиль: 4%
0.00019
Низкий
8.1 High
CVSS3
Дефекты
CWE-295