CVE-2020-10736
22.06.2020, 18:15
An authorization bypass vulnerability was found in Ceph versions 15.2.0 before 15.2.2, where the ceph-mon and ceph-mgr daemons do not properly restrict access, resulting in gaining access to unauthorized resources. This flaw allows an authenticated client to modify the configuration and possibly conduct further attacks.Enginsight
Vendor | Product | Version |
---|---|---|
linuxfoundation | ceph | 15.2.0 ≤ 𝑥 < 15.2.2 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration