Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5

Количество 5

ubuntu логотип

CVE-2023-2816

около 3 лет назад

Consul and Consul Enterprise allowed any user with service:write permissions to use Envoy extensions configured via service-defaults to patch remote proxy instances that target the configured service, regardless of whether the user has permission to modify the service(s) corresponding to those modified proxies.

CVSS3: 8.7
EPSS: Низкий
nvd логотип

CVE-2023-2816

около 3 лет назад

Consul and Consul Enterprise allowed any user with service:write permissions to use Envoy extensions configured via service-defaults to patch remote proxy instances that target the configured service, regardless of whether the user has permission to modify the service(s) corresponding to those modified proxies.

CVSS3: 8.7
EPSS: Низкий
msrc логотип

CVE-2023-2816

около 3 лет назад

Consul Envoy Extension Downsteam Proxy Configuration By Upstream Service Owner

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2023-2816

около 3 лет назад

Consul and Consul Enterprise allowed any user with service:write permi ...

CVSS3: 8.7
EPSS: Низкий
github логотип

GHSA-rqjq-ww83-wv5c

около 3 лет назад

Hashicorp Consul allows user with service:write permissions to patch remote proxy instances

CVSS3: 8.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2023-2816

Consul and Consul Enterprise allowed any user with service:write permissions to use Envoy extensions configured via service-defaults to patch remote proxy instances that target the configured service, regardless of whether the user has permission to modify the service(s) corresponding to those modified proxies.

CVSS3: 8.7
1%
Низкий
около 3 лет назад
nvd логотип
CVE-2023-2816

Consul and Consul Enterprise allowed any user with service:write permissions to use Envoy extensions configured via service-defaults to patch remote proxy instances that target the configured service, regardless of whether the user has permission to modify the service(s) corresponding to those modified proxies.

CVSS3: 8.7
1%
Низкий
около 3 лет назад
msrc логотип
CVE-2023-2816

Consul Envoy Extension Downsteam Proxy Configuration By Upstream Service Owner

CVSS3: 6.5
1%
Низкий
около 3 лет назад
debian логотип
CVE-2023-2816

Consul and Consul Enterprise allowed any user with service:write permi ...

CVSS3: 8.7
1%
Низкий
около 3 лет назад
github логотип
GHSA-rqjq-ww83-wv5c

Hashicorp Consul allows user with service:write permissions to patch remote proxy instances

CVSS3: 8.7
1%
Низкий
около 3 лет назад

Уязвимостей на страницу