Логотип exploitDog
bind:CVE-2023-37916
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-37916

Количество 2

Количество 2

nvd логотип

CVE-2023-37916

больше 2 лет назад

KubePi is an opensource kubernetes management panel. The endpoint /kubepi/api/v1/users/search?pageNum=1&&pageSize=10 leak password hash of any user (including admin). A sufficiently motivated attacker may be able to crack leaded password hashes. This issue has been addressed in version 1.6.5. Users are advised to upgrade. There are no known workarounds for this vulnerability.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-87f6-8gr7-pc6h

больше 2 лет назад

KubePi may leak password hash of any user

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-37916

KubePi is an opensource kubernetes management panel. The endpoint /kubepi/api/v1/users/search?pageNum=1&&pageSize=10 leak password hash of any user (including admin). A sufficiently motivated attacker may be able to crack leaded password hashes. This issue has been addressed in version 1.6.5. Users are advised to upgrade. There are no known workarounds for this vulnerability.

CVSS3: 6.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-87f6-8gr7-pc6h

KubePi may leak password hash of any user

CVSS3: 6.5
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу