ZeroHour

CVE-2018-18264

PoC
CVSS 3.0
7.5 high
EPSS
70%p99
Published
()
Modified
Description

Kubernetes Dashboard before 1.10.1 allows attackers to bypass authentication and use Dashboard's Service Account for reading secrets within the cluster.

Vendors
kubernetes
Products
dashboard
Weakness
CWE-306
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.