Логотип exploitDog
bind:CVE-2019-10176
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-10176

Количество 3

Количество 3

redhat логотип

CVE-2019-10176

больше 6 лет назад

A flaw was found in OpenShift Container Platform, versions 3.11 and later, in which the CSRF tokens used in the cluster console component were found to remain static during a user's session. An attacker with the ability to observe the value of this token would be able to re-use the token to perform a CSRF attack.

CVSS3: 4.2
EPSS: Низкий
nvd логотип

CVE-2019-10176

больше 6 лет назад

A flaw was found in OpenShift Container Platform, versions 3.11 and later, in which the CSRF tokens used in the cluster console component were found to remain static during a user's session. An attacker with the ability to observe the value of this token would be able to re-use the token to perform a CSRF attack.

CVSS3: 4.2
EPSS: Низкий
github логотип

GHSA-2g38-6996-78pm

больше 3 лет назад

A flaw was found in OpenShift Container Platform, versions 3.11 and later, in which the CSRF tokens used in the cluster console component were found to remain static during a user's session. An attacker with the ability to observe the value of this token would be able to re-use the token to perform a CSRF attack.

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2019-10176

A flaw was found in OpenShift Container Platform, versions 3.11 and later, in which the CSRF tokens used in the cluster console component were found to remain static during a user's session. An attacker with the ability to observe the value of this token would be able to re-use the token to perform a CSRF attack.

CVSS3: 4.2
0%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-10176

A flaw was found in OpenShift Container Platform, versions 3.11 and later, in which the CSRF tokens used in the cluster console component were found to remain static during a user's session. An attacker with the ability to observe the value of this token would be able to re-use the token to perform a CSRF attack.

CVSS3: 4.2
0%
Низкий
больше 6 лет назад
github логотип
GHSA-2g38-6996-78pm

A flaw was found in OpenShift Container Platform, versions 3.11 and later, in which the CSRF tokens used in the cluster console component were found to remain static during a user's session. An attacker with the ability to observe the value of this token would be able to re-use the token to perform a CSRF attack.

CVSS3: 5.4
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу