ZeroHour

CVE-2024-36539

CVSS 3.1
9.8 critical
EPSS
1%p68
Published
()
Modified
Description

Insecure permissions in contour v1.28.3 allows attackers to access sensitive data and escalate privileges by obtaining the service account's token.

Vendors
projectcontour
Products
contour
Weakness
CWE-277
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.