ZeroHour

CVE-2018-10937

PoC
CVSS 3.0
5.4 medium
EPSS
1%p63
Published
()
Modified
Description

A cross site scripting flaw exists in the tetonic-console component of Openshift Container Platform 3.11. An attacker with the ability to create pods can use this flaw to perform actions on the K8s API as the victim.

Vendors
redhat
Products
openshift container platform
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.