Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 17

Количество 17

ubuntu логотип

CVE-2021-20206

больше 5 лет назад

An improper limitation of path name flaw was found in containernetworking/cni in versions before 0.8.1. When specifying the plugin to load in the 'type' field in the network configuration, it is possible to use special elements such as "../" separators to reference binaries elsewhere on the system. This flaw allows an attacker to execute other existing binaries other than the cni plugins/types, such as 'reboot'. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

CVSS3: 7.2
EPSS: Низкий
redhat логотип

CVE-2021-20206

больше 5 лет назад

An improper limitation of path name flaw was found in containernetworking/cni in versions before 0.8.1. When specifying the plugin to load in the 'type' field in the network configuration, it is possible to use special elements such as "../" separators to reference binaries elsewhere on the system. This flaw allows an attacker to execute other existing binaries other than the cni plugins/types, such as 'reboot'. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

CVSS3: 7.2
EPSS: Низкий
nvd логотип

CVE-2021-20206

больше 5 лет назад

An improper limitation of path name flaw was found in containernetworking/cni in versions before 0.8.1. When specifying the plugin to load in the 'type' field in the network configuration, it is possible to use special elements such as "../" separators to reference binaries elsewhere on the system. This flaw allows an attacker to execute other existing binaries other than the cni plugins/types, such as 'reboot'. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

CVSS3: 7.2
EPSS: Низкий
debian логотип

CVE-2021-20206

больше 5 лет назад

An improper limitation of path name flaw was found in containernetwork ...

CVSS3: 7.2
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4593-1

больше 3 лет назад

Security update for cni-plugins

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4592-1

больше 3 лет назад

Security update for cni

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4150-1

больше 3 лет назад

Security update for cni

EPSS: Низкий
github логотип

GHSA-xjqr-g762-pxwp

больше 4 лет назад

containernetworking/cni improper limitation of path name

CVSS3: 7.2
EPSS: Низкий
fstec логотип

BDU:2023-05301

больше 5 лет назад

Уязвимость интерфейса для подключения сетевых плагинов к контейнерным оркестраторам Container Network Interface (CNI), позволяющая нарушителю оказать влияние на целостность, доступность и конфиденциальность защищаемой информации

CVSS3: 7.2
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4151-1

больше 3 лет назад

Security update for cni-plugins

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2022:0770-1

больше 4 лет назад

Security update for buildah

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:3766-1

почти 4 года назад

Security update for buildah

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:3655-1

почти 4 года назад

Security update for buildah

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:3480-1

почти 4 года назад

Security update for buildah

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:0770-1

больше 4 лет назад

Security update for buildah

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:0326-1

больше 3 лет назад

Security update for podman

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:0187-1

больше 3 лет назад

Security update for podman

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2021-20206

An improper limitation of path name flaw was found in containernetworking/cni in versions before 0.8.1. When specifying the plugin to load in the 'type' field in the network configuration, it is possible to use special elements such as "../" separators to reference binaries elsewhere on the system. This flaw allows an attacker to execute other existing binaries other than the cni plugins/types, such as 'reboot'. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

CVSS3: 7.2
2%
Низкий
больше 5 лет назад
redhat логотип
CVE-2021-20206

An improper limitation of path name flaw was found in containernetworking/cni in versions before 0.8.1. When specifying the plugin to load in the 'type' field in the network configuration, it is possible to use special elements such as "../" separators to reference binaries elsewhere on the system. This flaw allows an attacker to execute other existing binaries other than the cni plugins/types, such as 'reboot'. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

CVSS3: 7.2
2%
Низкий
больше 5 лет назад
nvd логотип
CVE-2021-20206

An improper limitation of path name flaw was found in containernetworking/cni in versions before 0.8.1. When specifying the plugin to load in the 'type' field in the network configuration, it is possible to use special elements such as "../" separators to reference binaries elsewhere on the system. This flaw allows an attacker to execute other existing binaries other than the cni plugins/types, such as 'reboot'. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

CVSS3: 7.2
2%
Низкий
больше 5 лет назад
debian логотип
CVE-2021-20206

An improper limitation of path name flaw was found in containernetwork ...

CVSS3: 7.2
2%
Низкий
больше 5 лет назад
suse-cvrf логотип
SUSE-SU-2022:4593-1

Security update for cni-plugins

2%
Низкий
больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:4592-1

Security update for cni

2%
Низкий
больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:4150-1

Security update for cni

2%
Низкий
больше 3 лет назад
github логотип
GHSA-xjqr-g762-pxwp

containernetworking/cni improper limitation of path name

CVSS3: 7.2
2%
Низкий
больше 4 лет назад
fstec логотип
BDU:2023-05301

Уязвимость интерфейса для подключения сетевых плагинов к контейнерным оркестраторам Container Network Interface (CNI), позволяющая нарушителю оказать влияние на целостность, доступность и конфиденциальность защищаемой информации

CVSS3: 7.2
2%
Низкий
больше 5 лет назад
suse-cvrf логотип
SUSE-SU-2022:4151-1

Security update for cni-plugins

больше 3 лет назад
suse-cvrf логотип
openSUSE-SU-2022:0770-1

Security update for buildah

больше 4 лет назад
suse-cvrf логотип
SUSE-SU-2022:3766-1

Security update for buildah

почти 4 года назад
suse-cvrf логотип
SUSE-SU-2022:3655-1

Security update for buildah

почти 4 года назад
suse-cvrf логотип
SUSE-SU-2022:3480-1

Security update for buildah

почти 4 года назад
suse-cvrf логотип
SUSE-SU-2022:0770-1

Security update for buildah

больше 4 лет назад
suse-cvrf логотип
SUSE-SU-2023:0326-1

Security update for podman

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2023:0187-1

Security update for podman

больше 3 лет назад

Уязвимостей на страницу