Логотип exploitDog
bind:CVE-2022-3162
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-3162

Количество 12

Количество 12

ubuntu логотип

CVE-2022-3162

больше 2 лет назад

Users authorized to list or watch one type of namespaced custom resource cluster-wide can read custom resources of a different type in the same API group without authorization. Clusters are impacted by this vulnerability if all of the following are true: 1. There are 2+ CustomResourceDefinitions sharing the same API group 2. Users have cluster-wide list or watch authorization on one of those custom resources. 3. The same users are not authorized to read another custom resource in the same API group.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2022-3162

больше 2 лет назад

Users authorized to list or watch one type of namespaced custom resource cluster-wide can read custom resources of a different type in the same API group without authorization. Clusters are impacted by this vulnerability if all of the following are true: 1. There are 2+ CustomResourceDefinitions sharing the same API group 2. Users have cluster-wide list or watch authorization on one of those custom resources. 3. The same users are not authorized to read another custom resource in the same API group.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2022-3162

больше 2 лет назад

Users authorized to list or watch one type of namespaced custom resource cluster-wide can read custom resources of a different type in the same API group without authorization. Clusters are impacted by this vulnerability if all of the following are true: 1. There are 2+ CustomResourceDefinitions sharing the same API group 2. Users have cluster-wide list or watch authorization on one of those custom resources. 3. The same users are not authorized to read another custom resource in the same API group.

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2022-3162

4 месяца назад

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2022-3162

больше 2 лет назад

Users authorized to list or watch one type of namespaced custom resour ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2394-5535-8j88

больше 2 лет назад

Kubernetes vulnerable to path traversal

CVSS3: 6.5
EPSS: Низкий
fstec логотип

BDU:2022-06757

больше 2 лет назад

Уязвимость программного средства управления кластерами виртуальных машин Kubernetes, связанная с недостатками контроля доступа, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 6.5
EPSS: Низкий
oracle-oval логотип

ELSA-2022-10036

больше 2 лет назад

ELSA-2022-10036: kubernetes security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2022-10035

больше 2 лет назад

ELSA-2022-10035: kubernetes security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2022-10034

больше 2 лет назад

ELSA-2022-10034: kubernetes security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2022-10033

больше 2 лет назад

ELSA-2022-10033: kubernetes security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2292-1

около 2 лет назад

Security update for kubernetes1.23

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-3162

Users authorized to list or watch one type of namespaced custom resource cluster-wide can read custom resources of a different type in the same API group without authorization. Clusters are impacted by this vulnerability if all of the following are true: 1. There are 2+ CustomResourceDefinitions sharing the same API group 2. Users have cluster-wide list or watch authorization on one of those custom resources. 3. The same users are not authorized to read another custom resource in the same API group.

CVSS3: 6.5
1%
Низкий
больше 2 лет назад
redhat логотип
CVE-2022-3162

Users authorized to list or watch one type of namespaced custom resource cluster-wide can read custom resources of a different type in the same API group without authorization. Clusters are impacted by this vulnerability if all of the following are true: 1. There are 2+ CustomResourceDefinitions sharing the same API group 2. Users have cluster-wide list or watch authorization on one of those custom resources. 3. The same users are not authorized to read another custom resource in the same API group.

CVSS3: 6.5
1%
Низкий
больше 2 лет назад
nvd логотип
CVE-2022-3162

Users authorized to list or watch one type of namespaced custom resource cluster-wide can read custom resources of a different type in the same API group without authorization. Clusters are impacted by this vulnerability if all of the following are true: 1. There are 2+ CustomResourceDefinitions sharing the same API group 2. Users have cluster-wide list or watch authorization on one of those custom resources. 3. The same users are not authorized to read another custom resource in the same API group.

CVSS3: 6.5
1%
Низкий
больше 2 лет назад
msrc логотип
CVSS3: 6.5
1%
Низкий
4 месяца назад
debian логотип
CVE-2022-3162

Users authorized to list or watch one type of namespaced custom resour ...

CVSS3: 6.5
1%
Низкий
больше 2 лет назад
github логотип
GHSA-2394-5535-8j88

Kubernetes vulnerable to path traversal

CVSS3: 6.5
1%
Низкий
больше 2 лет назад
fstec логотип
BDU:2022-06757

Уязвимость программного средства управления кластерами виртуальных машин Kubernetes, связанная с недостатками контроля доступа, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 6.5
1%
Низкий
больше 2 лет назад
oracle-oval логотип
ELSA-2022-10036

ELSA-2022-10036: kubernetes security update (IMPORTANT)

больше 2 лет назад
oracle-oval логотип
ELSA-2022-10035

ELSA-2022-10035: kubernetes security update (IMPORTANT)

больше 2 лет назад
oracle-oval логотип
ELSA-2022-10034

ELSA-2022-10034: kubernetes security update (IMPORTANT)

больше 2 лет назад
oracle-oval логотип
ELSA-2022-10033

ELSA-2022-10033: kubernetes security update (IMPORTANT)

больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:2292-1

Security update for kubernetes1.23

около 2 лет назад

Уязвимостей на страницу