Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown
CVE-2021-3586
Disclosure Date: August 22, 2022 (last updated October 08, 2023)
A flaw was found in servicemesh-operator. The NetworkPolicy resources installed for Maistra do not properly specify which ports may be accessed, allowing access to all ports on these resources from any pod. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
0
Attacker Value
Unknown
CVE-2014-3674
Disclosure Date: November 13, 2014 (last updated October 05, 2023)
Red Hat OpenShift Enterprise before 2.2 does not properly restrict access to gears, which allows remote attackers to access the network resources of arbitrary gears via unspecified vectors.
0
Attacker Value
Unknown
CVE-2014-3602
Disclosure Date: November 13, 2014 (last updated October 05, 2023)
Red Hat OpenShift Enterprise before 2.2 allows local users to obtain IP address and port number information for remote systems by reading /proc/net/tcp.
0
Attacker Value
Unknown
CVE-2014-3496
Disclosure Date: June 20, 2014 (last updated October 05, 2023)
cartridge_repository.rb in OpenShift Origin and Enterprise 1.2.8 through 2.1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in a Source-Url ending with a (1) .tar.gz, (2) .zip, (3) .tgz, or (4) .tar file extension in a cartridge manifest file.
0
Attacker Value
Unknown
CVE-2014-0164
Disclosure Date: May 05, 2014 (last updated October 05, 2023)
openshift-origin-broker-util, as used in Red Hat OpenShift Enterprise 1.2.7 and 2.0.5, uses world-readable permissions for the mcollective client.cfg configuration file, which allows local users to obtain credentials and other sensitive information by reading the file.
0