Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 2

Количество 2

nvd логотип

CVE-2020-11012

больше 6 лет назад

MinIO versions before RELEASE.2020-04-23T00-58-49Z have an authentication bypass issue in the MinIO admin API. Given an admin access key, it is possible to perform admin API operations i.e. creating new service accounts for existing access keys - without knowing the admin secret key. This has been fixed and released in version RELEASE.2020-04-23T00-58-49Z.

CVSS3: 9.3
EPSS: Низкий
github логотип

GHSA-xv4r-vccv-mg4w

около 5 лет назад

MinIO Admin API security issue

CVSS3: 7.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-11012

MinIO versions before RELEASE.2020-04-23T00-58-49Z have an authentication bypass issue in the MinIO admin API. Given an admin access key, it is possible to perform admin API operations i.e. creating new service accounts for existing access keys - without knowing the admin secret key. This has been fixed and released in version RELEASE.2020-04-23T00-58-49Z.

CVSS3: 9.3
2%
Низкий
больше 6 лет назад
github логотип
GHSA-xv4r-vccv-mg4w

MinIO Admin API security issue

CVSS3: 7.1
2%
Низкий
около 5 лет назад

Уязвимостей на страницу