Количество 5
Количество 5

CVE-2023-28434
Minio is a Multi-Cloud Object Storage framework. Prior to RELEASE.2023-03-20T20-16-18Z, an attacker can use crafted requests to bypass metadata bucket name checking and put an object into any bucket while processing `PostPolicyBucket`. To carry out this attack, the attacker requires credentials with `arn:aws:s3:::*` permission, as well as enabled Console API access. This issue has been patched in RELEASE.2023-03-20T20-16-18Z. As a workaround, enable browser API access and turn off `MINIO_BROWSER=off`.
CVE-2023-28434
Minio is a Multi-Cloud Object Storage framework. Prior to RELEASE.2023 ...
GHSA-2pxw-r47w-4p8c
Privilege Escalation on Linux/MacOS

BDU:2023-05199
Уязвимость компонента PostPolicyBucket сервера хранения объектов MinIO, позволяющая нарушителю выполнить произвольный код

ROS-20240807-05
Множественные уязвимости minio
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2023-28434 Minio is a Multi-Cloud Object Storage framework. Prior to RELEASE.2023-03-20T20-16-18Z, an attacker can use crafted requests to bypass metadata bucket name checking and put an object into any bucket while processing `PostPolicyBucket`. To carry out this attack, the attacker requires credentials with `arn:aws:s3:::*` permission, as well as enabled Console API access. This issue has been patched in RELEASE.2023-03-20T20-16-18Z. As a workaround, enable browser API access and turn off `MINIO_BROWSER=off`. | CVSS3: 8.8 | 34% Средний | больше 2 лет назад |
CVE-2023-28434 Minio is a Multi-Cloud Object Storage framework. Prior to RELEASE.2023 ... | CVSS3: 8.8 | 34% Средний | больше 2 лет назад | |
GHSA-2pxw-r47w-4p8c Privilege Escalation on Linux/MacOS | CVSS3: 8.8 | 34% Средний | почти 2 года назад | |
![]() | BDU:2023-05199 Уязвимость компонента PostPolicyBucket сервера хранения объектов MinIO, позволяющая нарушителю выполнить произвольный код | CVSS3: 8.8 | 34% Средний | больше 2 лет назад |
![]() | ROS-20240807-05 Множественные уязвимости minio | CVSS3: 8.8 | 11 месяцев назад |
Уязвимостей на страницу