CVE-2024-10005
30.10.2024, 22:15
A vulnerability was identified in Consul and Consul Enterprise (Consul) such that using URL paths in L7 traffic intentions could bypass HTTP request path-based access rules.
Vendor | Product | Version |
---|---|---|
hashicorp | consul | 1.20.1 < 𝑥 < 1.20.1 |
hashicorp | consul | 1.20.1 < 𝑥 < 1.20.1 |
hashicorp | consul | 1.4.1 ≤ 𝑥 < 1.20.1 |
hashicorp | consul | 1.9.0 ≤ 𝑥 < 1.15.15 |
hashicorp | consul | 1.18.0 ≤ 𝑥 < 1.18.5 |
hashicorp | consul | 1.19.0 ≤ 𝑥 < 1.19.3 |
hashicorp | consul | 1.20.0 |
𝑥
= Vulnerable software versions