Количество 3
Количество 3
CVE-2022-45157
A vulnerability has been identified in the way that Rancher stores vSphere's CPI (Cloud Provider Interface) and CSI (Container Storage Interface) credentials used to deploy clusters through the vSphere cloud provider. This issue leads to the vSphere CPI and CSI passwords being stored in a plaintext object inside Rancher. This vulnerability is only applicable to users that deploy clusters in vSphere environments.
GHSA-xj7w-r753-vj8v
Exposure of vSphere's CPI and CSI credentials in Rancher
BDU:2025-00182
Уязвимость компонентов vSphere CPI (Cloud Provider Interface) и vSphere CSI (Container Storage Interface) программной платформы для развертывания контейнеров в производственной среде Rancher, позволяющая нарушителю раскрыть защищаемую информацию
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-45157 A vulnerability has been identified in the way that Rancher stores vSphere's CPI (Cloud Provider Interface) and CSI (Container Storage Interface) credentials used to deploy clusters through the vSphere cloud provider. This issue leads to the vSphere CPI and CSI passwords being stored in a plaintext object inside Rancher. This vulnerability is only applicable to users that deploy clusters in vSphere environments. | CVSS3: 9.1 | 0% Низкий | почти 2 года назад | |
GHSA-xj7w-r753-vj8v Exposure of vSphere's CPI and CSI credentials in Rancher | CVSS3: 9.1 | 0% Низкий | почти 2 года назад | |
BDU:2025-00182 Уязвимость компонентов vSphere CPI (Cloud Provider Interface) и vSphere CSI (Container Storage Interface) программной платформы для развертывания контейнеров в производственной среде Rancher, позволяющая нарушителю раскрыть защищаемую информацию | CVSS3: 9.1 | 0% Низкий | почти 2 года назад |
Уязвимостей на страницу