Количество 2
Количество 2
CVE-2020-8567
Kubernetes Secrets Store CSI Driver Vault Plugin prior to v0.0.6, Azure Plugin prior to v0.0.10, and GCP Plugin prior to v0.2.0 allow an attacker who can create specially-crafted SecretProviderClass objects to write to arbitrary file paths on the host filesystem, including /var/lib/kubelet/pods.
GHSA-2v35-wj4r-rcmv
Kubernetes Secrets Store CSI Driver plugins arbitrary file write
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2020-8567 Kubernetes Secrets Store CSI Driver Vault Plugin prior to v0.0.6, Azure Plugin prior to v0.0.10, and GCP Plugin prior to v0.2.0 allow an attacker who can create specially-crafted SecretProviderClass objects to write to arbitrary file paths on the host filesystem, including /var/lib/kubelet/pods. | CVSS3: 4.9 | 0% Низкий | около 5 лет назад | |
GHSA-2v35-wj4r-rcmv Kubernetes Secrets Store CSI Driver plugins arbitrary file write | CVSS3: 4.9 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу