CVE-2018-1069
—CVSS 3.0
7.1 high
EPSS
<1%p46
Published
()
Modified
Description
Red Hat OpenShift Enterprise version 3.7 is vulnerable to access control override for container network filesystems. An attacker could override the UserId and GroupId for GlusterFS and NFS to read and write any data on the network filesystem.
- Vendors
- redhat
- Products
- openshift
- Weakness
- CWE-284, CWE-732
- Vector
- CVSS:3.0/AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.