ZeroHour

CVE-2020-10728

CVSS 3.1
7.8 high
EPSS
<1%p12
Published
()
Modified
Description

A flaw was found in automationbroker/apb container in versions up to and including 2.0.4-1. This container grants all users sudoer permissions allowing an unauthorized user with access to the running container the ability to escalate their own privileges. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

Vendors
automationbroker
Products
apb
Weakness
CWE-266, CWE-269
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.