Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-2160

Опубликовано: 10 мар. 2016
Источник: redhat
CVSS2: 7.1
EPSS Низкий

Описание

Red Hat OpenShift Enterprise 3.2 and OpenShift Origin allow remote authenticated users to execute commands with root privileges by changing the root password in an sti builder image.

A flaw was found in the building of containers within OpenShift Enterprise. An attacker could submit an image for building that executes commands within the container as root, allowing them to potentially escalate privileges.

Дополнительная информация

Статус:

Important
https://bugzilla.redhat.com/show_bug.cgi?id=1316127Privilege escalation when changing root password in sti builder image

EPSS

Процентиль: 90%
0.0406
Низкий

7.1 High

CVSS2

Связанные уязвимости

CVSS3: 8.8
nvd
около 10 лет назад

Red Hat OpenShift Enterprise 3.2 and OpenShift Origin allow remote authenticated users to execute commands with root privileges by changing the root password in an sti builder image.

EPSS

Процентиль: 90%
0.0406
Низкий

7.1 High

CVSS2