CVE-2023-30512
12.04.2023, 06:15
CubeFS through 3.2.1 allows Kubernetes cluster-level privilege escalation. This occurs because DaemonSet has cfs-csi-cluster-role and can thus list all secrets, including the admin secret.Enginsight
Vendor | Product | Version |
---|---|---|
linuxfoundation | cubefs | 𝑥 ≤ 3.2.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration