Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2019-8336

Опубликовано: 05 мар. 2019
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8
CVSS3: 8.1

Описание

HashiCorp Consul (and Consul Enterprise) 1.4.x before 1.4.3 allows a client to bypass intended access restrictions and obtain the privileges of one other arbitrary token within secondary datacenters, because a token with literally "" as its secret is used in unusual circumstances.

РелизСтатусПримечание
bionic

not-affected

devel

not-affected

esm-apps/bionic

not-affected

esm-apps/focal

not-affected

esm-infra-legacy/trusty

DNE

focal

not-affected

groovy

not-affected

precise/esm

DNE

trusty

ignored

end of standard support
trusty/esm

DNE

Показывать по

EPSS

Процентиль: 58%
0.00362
Низкий

6.8 Medium

CVSS2

8.1 High

CVSS3

Связанные уязвимости

CVSS3: 8.1
nvd
почти 7 лет назад

HashiCorp Consul (and Consul Enterprise) 1.4.x before 1.4.3 allows a client to bypass intended access restrictions and obtain the privileges of one other arbitrary token within secondary datacenters, because a token with literally "<hidden>" as its secret is used in unusual circumstances.

CVSS3: 8.1
debian
почти 7 лет назад

HashiCorp Consul (and Consul Enterprise) 1.4.x before 1.4.3 allows a c ...

CVSS3: 8.1
github
больше 3 лет назад

HashiCorp Consul Access Restriction Bypass

EPSS

Процентиль: 58%
0.00362
Низкий

6.8 Medium

CVSS2

8.1 High

CVSS3