Логотип exploitDog
bind:CVE-2018-19367
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-19367

Количество 2

Количество 2

nvd логотип

CVE-2018-19367

около 7 лет назад

Portainer through 1.19.2 provides an API endpoint (/api/users/admin/check) to verify that the admin user is already created. This API endpoint will return 404 if admin was not created and 204 if it was already created. Attackers can set an admin password in the 404 case.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2mq6-rxq2-qgxv

больше 3 лет назад

Portainer through 1.19.2 provides an API endpoint (/api/users/admin/check) to verify that the admin user is already created. This API endpoint will return 404 if admin was not created and 204 if it was already created. Attackers can set an admin password in the 404 case.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-19367

Portainer through 1.19.2 provides an API endpoint (/api/users/admin/check) to verify that the admin user is already created. This API endpoint will return 404 if admin was not created and 204 if it was already created. Attackers can set an admin password in the 404 case.

CVSS3: 9.8
0%
Низкий
около 7 лет назад
github логотип
GHSA-2mq6-rxq2-qgxv

Portainer through 1.19.2 provides an API endpoint (/api/users/admin/check) to verify that the admin user is already created. This API endpoint will return 404 if admin was not created and 204 if it was already created. Attackers can set an admin password in the 404 case.

CVSS3: 9.8
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу