Логотип exploitDog
bind:"GHSA-74j8-88mm-7496" OR bind:"CVE-2020-8561"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-74j8-88mm-7496" OR bind:"CVE-2020-8561"

Количество 7

Количество 7

github логотип

GHSA-74j8-88mm-7496

около 4 лет назад

Confused Deputy in Kubernetes

CVSS3: 4.1
EPSS: Низкий
ubuntu логотип

CVE-2020-8561

около 4 лет назад

A security issue was discovered in Kubernetes where actors that control the responses of MutatingWebhookConfiguration or ValidatingWebhookConfiguration requests are able to redirect kube-apiserver requests to private networks of the apiserver. If that user can view kube-apiserver logs when the log level is set to 10, they can view the redirected responses and headers in the logs.

CVSS3: 4.1
EPSS: Низкий
redhat логотип

CVE-2020-8561

около 4 лет назад

A security issue was discovered in Kubernetes where actors that control the responses of MutatingWebhookConfiguration or ValidatingWebhookConfiguration requests are able to redirect kube-apiserver requests to private networks of the apiserver. If that user can view kube-apiserver logs when the log level is set to 10, they can view the redirected responses and headers in the logs.

CVSS3: 4.1
EPSS: Низкий
nvd логотип

CVE-2020-8561

около 4 лет назад

A security issue was discovered in Kubernetes where actors that control the responses of MutatingWebhookConfiguration or ValidatingWebhookConfiguration requests are able to redirect kube-apiserver requests to private networks of the apiserver. If that user can view kube-apiserver logs when the log level is set to 10, they can view the redirected responses and headers in the logs.

CVSS3: 4.1
EPSS: Низкий
msrc логотип

CVE-2020-8561

около 1 месяца назад

Webhook redirect in kube-apiserver

CVSS3: 4.1
EPSS: Низкий
debian логотип

CVE-2020-8561

около 4 лет назад

A security issue was discovered in Kubernetes where actors that contro ...

CVSS3: 4.1
EPSS: Низкий
fstec логотип

BDU:2022-01837

около 4 лет назад

Уязвимость программного средства управления кластерами виртуальных машин Kubernetes, связанная с ошибками при обработке гипертекстовых ссылок, позволяющая нарушителю получить доступ к конфиденциальным данным

CVSS3: 4.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-74j8-88mm-7496

Confused Deputy in Kubernetes

CVSS3: 4.1
0%
Низкий
около 4 лет назад
ubuntu логотип
CVE-2020-8561

A security issue was discovered in Kubernetes where actors that control the responses of MutatingWebhookConfiguration or ValidatingWebhookConfiguration requests are able to redirect kube-apiserver requests to private networks of the apiserver. If that user can view kube-apiserver logs when the log level is set to 10, they can view the redirected responses and headers in the logs.

CVSS3: 4.1
0%
Низкий
около 4 лет назад
redhat логотип
CVE-2020-8561

A security issue was discovered in Kubernetes where actors that control the responses of MutatingWebhookConfiguration or ValidatingWebhookConfiguration requests are able to redirect kube-apiserver requests to private networks of the apiserver. If that user can view kube-apiserver logs when the log level is set to 10, they can view the redirected responses and headers in the logs.

CVSS3: 4.1
0%
Низкий
около 4 лет назад
nvd логотип
CVE-2020-8561

A security issue was discovered in Kubernetes where actors that control the responses of MutatingWebhookConfiguration or ValidatingWebhookConfiguration requests are able to redirect kube-apiserver requests to private networks of the apiserver. If that user can view kube-apiserver logs when the log level is set to 10, they can view the redirected responses and headers in the logs.

CVSS3: 4.1
0%
Низкий
около 4 лет назад
msrc логотип
CVE-2020-8561

Webhook redirect in kube-apiserver

CVSS3: 4.1
0%
Низкий
около 1 месяца назад
debian логотип
CVE-2020-8561

A security issue was discovered in Kubernetes where actors that contro ...

CVSS3: 4.1
0%
Низкий
около 4 лет назад
fstec логотип
BDU:2022-01837

Уязвимость программного средства управления кластерами виртуальных машин Kubernetes, связанная с ошибками при обработке гипертекстовых ссылок, позволяющая нарушителю получить доступ к конфиденциальным данным

CVSS3: 4.1
0%
Низкий
около 4 лет назад

Уязвимостей на страницу