Логотип exploitDog
bind:CVE-2021-41802
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-41802

Количество 3

Количество 3

redhat логотип

CVE-2021-41802

больше 4 лет назад

HashiCorp Vault and Vault Enterprise through 1.7.4 and 1.8.3 allowed a user with write permission to an entity alias ID sharing a mount accessor with another user to acquire this other user’s policies by merging their identities. Fixed in Vault and Vault Enterprise 1.7.5 and 1.8.4.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2021-41802

больше 4 лет назад

HashiCorp Vault and Vault Enterprise through 1.7.4 and 1.8.3 allowed a user with write permission to an entity alias ID sharing a mount accessor with another user to acquire this other user’s policies by merging their identities. Fixed in Vault and Vault Enterprise 1.7.5 and 1.8.4.

CVSS3: 2.9
EPSS: Низкий
github логотип

GHSA-qv95-g3gm-x542

больше 4 лет назад

Hashicorp Vault Privilege Escalation Vulnerability

CVSS3: 2.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2021-41802

HashiCorp Vault and Vault Enterprise through 1.7.4 and 1.8.3 allowed a user with write permission to an entity alias ID sharing a mount accessor with another user to acquire this other user’s policies by merging their identities. Fixed in Vault and Vault Enterprise 1.7.5 and 1.8.4.

CVSS3: 5.4
0%
Низкий
больше 4 лет назад
nvd логотип
CVE-2021-41802

HashiCorp Vault and Vault Enterprise through 1.7.4 and 1.8.3 allowed a user with write permission to an entity alias ID sharing a mount accessor with another user to acquire this other user’s policies by merging their identities. Fixed in Vault and Vault Enterprise 1.7.5 and 1.8.4.

CVSS3: 2.9
0%
Низкий
больше 4 лет назад
github логотип
GHSA-qv95-g3gm-x542

Hashicorp Vault Privilege Escalation Vulnerability

CVSS3: 2.9
0%
Низкий
больше 4 лет назад

Уязвимостей на страницу