Количество 4
Количество 4

CVE-2023-25812
Minio is a Multi-Cloud Object Storage framework. Affected versions do not correctly honor a `Deny` policy on ByPassGoverance. Ideally, minio should return "Access Denied" to all users attempting to DELETE a versionId with the special header `X-Amz-Bypass-Governance-Retention: true`. However, this was not honored instead the request will be honored and an object under governance would be incorrectly deleted. All users are advised to upgrade. There are no known workarounds for this issue.
CVE-2023-25812
Minio is a Multi-Cloud Object Storage framework. Affected versions do ...

ROS-20230317-03
Уязвимость Minio

BDU:2023-01857
Уязвимость сервера хранения объектов MinIO, связана с ошибками при сохранении разрешений, позволяющая нарушителю удалить управляемый объект
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2023-25812 Minio is a Multi-Cloud Object Storage framework. Affected versions do not correctly honor a `Deny` policy on ByPassGoverance. Ideally, minio should return "Access Denied" to all users attempting to DELETE a versionId with the special header `X-Amz-Bypass-Governance-Retention: true`. However, this was not honored instead the request will be honored and an object under governance would be incorrectly deleted. All users are advised to upgrade. There are no known workarounds for this issue. | CVSS3: 6.5 | 0% Низкий | больше 2 лет назад |
CVE-2023-25812 Minio is a Multi-Cloud Object Storage framework. Affected versions do ... | CVSS3: 6.5 | 0% Низкий | больше 2 лет назад | |
![]() | ROS-20230317-03 Уязвимость Minio | CVSS3: 8.8 | 0% Низкий | больше 2 лет назад |
![]() | BDU:2023-01857 Уязвимость сервера хранения объектов MinIO, связана с ошибками при сохранении разрешений, позволяющая нарушителю удалить управляемый объект | CVSS3: 8.8 | 0% Низкий | больше 2 лет назад |
Уязвимостей на страницу