PT-2016-5029 · Red Hat · Red Hat Openshift Enterprise

CVE-2016-2149

·

Publicado

2016-06-08

·

Atualizado

2023-02-13

CVSS v3.1

6.5

Média

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Red Hat OpenShift Enterprise version 3.2
Description The issue allows remote authenticated users to read log files from another namespace. This can be achieved by creating a new namespace with the same name as a previously deleted namespace.
Recommendations For Red Hat OpenShift Enterprise version 3.2, update to a version that includes a fix for this issue to prevent unauthorized access to log files.

Correção

Information Disclosure

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2016-2149
RHSA-2016:1064

Produtos afetados

Red Hat Openshift Enterprise