CVE-2019-10165
30.07.2019, 23:15
OpenShift Container Platform before version 4.1.3 writes OAuth tokens in plaintext to the audit logs for the Kubernetes API server and OpenShift API server. A user with sufficient privileges could recover OAuth tokens from these audit logs and use them to access other resources.Enginsight
Vendor | Product | Version |
---|---|---|
redhat | openshift_container_platform | 𝑥 < 4.1.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References