CVE-2024-22030
EUVD-2024-280716.10.2024, 14:15
A vulnerability has been identified within Rancher that can be exploited in narrow circumstances through a man-in-the-middle (MITM) attack. An attacker would need to have control of an expired domain or execute a DNS spoofing/hijacking attack against the domain to exploit this vulnerability. The targeted domain is the one used as the Rancher URL.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| suse | rancher | 2.7.0 ≤ 𝑥 < 2.7.15 | ADP |
| suse | rancher | 2.8.0 ≤ 𝑥 < 2.8.8 | ADP |
| suse | rancher | 2.9.0 ≤ 𝑥 < 2.9.2 | ADP |
Common Weakness Enumeration