Логотип exploitDog
bind:CVE-2023-32194
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-32194

Количество 2

Количество 2

nvd логотип

CVE-2023-32194

больше 1 года назад

A vulnerability has been identified when granting a create or * global role for a resource type of "namespaces"; no matter the API group, the subject will receive * permissions for core namespaces. This can lead to someone being capable of accessing, creating, updating, or deleting a namespace in the project.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-c85r-fwc7-45vc

около 2 лет назад

Rancher permissions on 'namespaces' in any API group grants 'edit' permissions on namespaces in 'core'

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-32194

A vulnerability has been identified when granting a create or * global role for a resource type of "namespaces"; no matter the API group, the subject will receive * permissions for core namespaces. This can lead to someone being capable of accessing, creating, updating, or deleting a namespace in the project.

CVSS3: 7.2
0%
Низкий
больше 1 года назад
github логотип
GHSA-c85r-fwc7-45vc

Rancher permissions on 'namespaces' in any API group grants 'edit' permissions on namespaces in 'core'

CVSS3: 7.2
0%
Низкий
около 2 лет назад

Уязвимостей на страницу