ZeroHour

CVE-2016-3738

CVSS 3.0
8.8 high
EPSS
2%p79
Published
()
Modified
Description

Red Hat OpenShift Enterprise 3.2 does not properly restrict access to STI builds, which allows remote authenticated users to access the Docker socket and gain privileges via vectors related to build-pod.

Vendors
redhat
Products
openshift
Weakness
CWE-264
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.