boot2docker records
2 published records for vendor boot2docker.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
36Monitor | CVE-2014-5279No exploit | The Docker daemon managed by boot2docker 1.2 and earlier improperly enables unauthenticated TCP connections by default, which makes it easieboot2docker · boot2docker · CWE-284 | High8.8 | — | 2.8% | Feb 6, 2018 |
35Monitor | CVE-2014-5280No exploit | boot2docker 1.2 and earlier allows attackers to conduct cross-site request forgery (CSRF) attacks by leveraging Docker daemons enabling TCP boot2docker · boot2docker · CWE-352 | High8.8 | — | 0.7% | Feb 6, 2018 |
- CVE-2014-527936Monitor
The Docker daemon managed by boot2docker 1.2 and earlier improperly enables unauthenticated TCP connections by default, which makes it easie
HighCVSS 8.8No exploitEPSS 3%boot2docker · boot2dockerFeb 6, 2018
- CVE-2014-528035Monitor
boot2docker 1.2 and earlier allows attackers to conduct cross-site request forgery (CSRF) attacks by leveraging Docker daemons enabling TCP
HighCVSS 8.8No exploitEPSS 1%boot2docker · boot2dockerFeb 6, 2018