CVE-2024-58267
EUVD-2025-3133602.10.2025, 12:15
A vulnerability has been identified within Rancher Manager whereby the SAML authentication from the Rancher CLI tool is vulnerable to phishing attacks. The custom authentication protocol for SAML-based providers can be abused to steal Rancher’s authentication tokens.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| suse | rancher | 2.12.0 ≤ 𝑥 < 2.12.2 | CNA |
| suse | rancher | 2.11.0 ≤ 𝑥 < 2.11.6 | CNA |
| suse | rancher | 2.10.0 ≤ 𝑥 < 2.10.10 | CNA |
| suse | rancher | 2.9.0 ≤ 𝑥 < 2.9.12 | CNA |
Common Weakness Enumeration