Записи Mirantis
5 опубликованных записей вендора mirantis.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-20 Improper Input Validation1
- CWE-284 Improper Access Control1
- CWE-287 Improper Authentication1
- CWE-401 Missing Release of Memory after Effective Lifetime1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
5 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
38Наблюдать | CVE-2021-44458Эксплойта нет | Lack of websocket authentication in Lens causes remote code execution when visiting a malicious websitelinux · linux kernel · CWE-287 | Критическая9,6 | — | 0,4 % | 10 янв. 2022 г. |
35Наблюдать | CVE-2022-0484Эксплойта нет | Improper URL Validation causes Mirantis Container Cloud Lens Extension to open external programsmirantis · container cloud lens extension · CWE-20 | Высокая8,8 | — | 1,0 % | 4 февр. 2022 г. |
35Наблюдать | CVE-2022-0270Эксплойта нет | Improper header sanitization in bored-agent causes escalation of privilegemirantis · bored-agent · CWE-284 | Высокая8,8 | — | 0,9 % | 25 янв. 2022 г. |
31Наблюдать | CVE-2021-23154Эксплойта нет | Command injection in Lens causes arbitrary shell command execution when malicious custom helm chart configuration providedmirantis · lens · CWE-94 | Высокая7,8 | — | 0,6 % | 10 янв. 2022 г. |
30Наблюдать | CVE-2021-23218Эксплойта нет | Memory Leak in Mirantis Container Runtime (MCR) running in FIPS mode causes a Denial of Servicemirantis · mirantis container runtime · CWE-401 | Высокая7,5 | — | 0,9 % | 10 янв. 2022 г. |
- CVE-2021-4445838Наблюдать
Lack of websocket authentication in Lens causes remote code execution when visiting a malicious website
КритическаяCVSS 9,6Эксплойта нетEPSS 0 %linux · linux kernel10 янв. 2022 г.
- CVE-2022-048435Наблюдать
Improper URL Validation causes Mirantis Container Cloud Lens Extension to open external programs
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %mirantis · container cloud lens extension4 февр. 2022 г.
- CVE-2022-027035Наблюдать
Improper header sanitization in bored-agent causes escalation of privilege
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %mirantis · bored-agent25 янв. 2022 г.
- CVE-2021-2315431Наблюдать
Command injection in Lens causes arbitrary shell command execution when malicious custom helm chart configuration provided
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %mirantis · lens10 янв. 2022 г.
- CVE-2021-2321830Наблюдать
Memory Leak in Mirantis Container Runtime (MCR) running in FIPS mode causes a Denial of Service
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %mirantis · mirantis container runtime10 янв. 2022 г.