Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

redhat логотип

CVE-2021-41802

почти 5 лет назад

HashiCorp Vault and Vault Enterprise through 1.7.4 and 1.8.3 allowed a user with write permission to an entity alias ID sharing a mount accessor with another user to acquire this other user’s policies by merging their identities. Fixed in Vault and Vault Enterprise 1.7.5 and 1.8.4.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2021-41802

почти 5 лет назад

HashiCorp Vault and Vault Enterprise through 1.7.4 and 1.8.3 allowed a user with write permission to an entity alias ID sharing a mount accessor with another user to acquire this other user’s policies by merging their identities. Fixed in Vault and Vault Enterprise 1.7.5 and 1.8.4.

CVSS3: 2.9
EPSS: Низкий
github логотип

GHSA-qv95-g3gm-x542

почти 5 лет назад

Hashicorp Vault Privilege Escalation Vulnerability

CVSS3: 2.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2021-41802

HashiCorp Vault and Vault Enterprise through 1.7.4 and 1.8.3 allowed a user with write permission to an entity alias ID sharing a mount accessor with another user to acquire this other user’s policies by merging their identities. Fixed in Vault and Vault Enterprise 1.7.5 and 1.8.4.

CVSS3: 5.4
1%
Низкий
почти 5 лет назад
nvd логотип
CVE-2021-41802

HashiCorp Vault and Vault Enterprise through 1.7.4 and 1.8.3 allowed a user with write permission to an entity alias ID sharing a mount accessor with another user to acquire this other user’s policies by merging their identities. Fixed in Vault and Vault Enterprise 1.7.5 and 1.8.4.

CVSS3: 2.9
1%
Низкий
почти 5 лет назад
github логотип
GHSA-qv95-g3gm-x542

Hashicorp Vault Privilege Escalation Vulnerability

CVSS3: 2.9
1%
Низкий
почти 5 лет назад

Уязвимостей на страницу