CVE-2022-0270
EUVD-2022-1544925.01.2022, 20:15
Prior to v0.6.1, bored-agent failed to sanitize incoming kubernetes impersonation headers allowing a user to override assigned user name and groups.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| mirantis | bored-agent | 𝑥 < 0.6.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration