Логотип exploitDog
bind:CVE-2020-11012
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-11012

Количество 2

Количество 2

nvd логотип

CVE-2020-11012

почти 6 лет назад

MinIO versions before RELEASE.2020-04-23T00-58-49Z have an authentication bypass issue in the MinIO admin API. Given an admin access key, it is possible to perform admin API operations i.e. creating new service accounts for existing access keys - without knowing the admin secret key. This has been fixed and released in version RELEASE.2020-04-23T00-58-49Z.

CVSS3: 9.3
EPSS: Низкий
github логотип

GHSA-xv4r-vccv-mg4w

больше 4 лет назад

MinIO Admin API security issue

CVSS3: 7.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-11012

MinIO versions before RELEASE.2020-04-23T00-58-49Z have an authentication bypass issue in the MinIO admin API. Given an admin access key, it is possible to perform admin API operations i.e. creating new service accounts for existing access keys - without knowing the admin secret key. This has been fixed and released in version RELEASE.2020-04-23T00-58-49Z.

CVSS3: 9.3
0%
Низкий
почти 6 лет назад
github логотип
GHSA-xv4r-vccv-mg4w

MinIO Admin API security issue

CVSS3: 7.1
0%
Низкий
больше 4 лет назад

Уязвимостей на страницу