ZeroHour

CVE-2018-1069

CVSS 3.0
7.1 high
EPSS
<1%p46
Published
()
Modified
Description

Red Hat OpenShift Enterprise version 3.7 is vulnerable to access control override for container network filesystems. An attacker could override the UserId and GroupId for GlusterFS and NFS to read and write any data on the network filesystem.

Vendors
redhat
Products
openshift
Weakness
CWE-284, CWE-732
Vector
CVSS:3.0/AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.