CVE-2022-0270
25.01.2022, 20:15
Prior to v0.6.1, bored-agent failed to sanitize incoming kubernetes impersonation headers allowing a user to override assigned user name and groups.Enginsight
Vendor | Product | Version |
---|---|---|
mirantis | bored-agent | 𝑥 < 0.6.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration