CVE-2025-23391
EUVD-2025-931011.04.2025, 11:15
A Incorrect Privilege Assignment vulnerability in SUSE rancher allows a Restricted Administrator to change the password of Administrators and take over their accounts. This issue affects rancher: from 2.8.0 before 2.8.14, from 2.9.0 before 2.9.8, from 2.10.0 before 2.10.4.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| suse | rancher | 2.8.0 ≤ 𝑥 < 2.8.14 | CNA |
| suse | rancher | 2.9.0 ≤ 𝑥 < 2.9.8 | CNA |
| suse | rancher | 2.10.0 ≤ 𝑥 < 2.10.4 | CNA |
Common Weakness Enumeration