Логотип exploitDog
bind:CVE-2020-25655
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-25655

Количество 3

Количество 3

redhat логотип

CVE-2020-25655

больше 5 лет назад

An issue was discovered in ManagedClusterView API, that could allow secrets to be disclosed to users without the correct permissions. Views created for an admin user would be made available for a short time to users with only view permission. In this short time window the user with view permission could read cluster secrets that should only be disclosed to admin users.

CVSS3: 5.7
EPSS: Низкий
nvd логотип

CVE-2020-25655

больше 5 лет назад

An issue was discovered in ManagedClusterView API, that could allow secrets to be disclosed to users without the correct permissions. Views created for an admin user would be made available for a short time to users with only view permission. In this short time window the user with view permission could read cluster secrets that should only be disclosed to admin users.

CVSS3: 5.7
EPSS: Низкий
github логотип

GHSA-fvqj-2g9g-f9xv

больше 3 лет назад

An issue was discovered in ManagedClusterView API, that could allow secrets to be disclosed to users without the correct permissions. Views created for an admin user would be made available for a short time to users with only view permission. In this short time window the user with view permission could read cluster secrets that should only be disclosed to admin users.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2020-25655

An issue was discovered in ManagedClusterView API, that could allow secrets to be disclosed to users without the correct permissions. Views created for an admin user would be made available for a short time to users with only view permission. In this short time window the user with view permission could read cluster secrets that should only be disclosed to admin users.

CVSS3: 5.7
0%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-25655

An issue was discovered in ManagedClusterView API, that could allow secrets to be disclosed to users without the correct permissions. Views created for an admin user would be made available for a short time to users with only view permission. In this short time window the user with view permission could read cluster secrets that should only be disclosed to admin users.

CVSS3: 5.7
0%
Низкий
больше 5 лет назад
github логотип
GHSA-fvqj-2g9g-f9xv

An issue was discovered in ManagedClusterView API, that could allow secrets to be disclosed to users without the correct permissions. Views created for an admin user would be made available for a short time to users with only view permission. In this short time window the user with view permission could read cluster secrets that should only be disclosed to admin users.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу