Mirantis kayıtları
mirantis üreticisine ait 5 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-20 Improper Input Validation1
- CWE-284 Improper Access Control1
- CWE-287 Improper Authentication1
- CWE-401 Missing Release of Memory after Effective Lifetime1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
5 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
38İzleyin | CVE-2021-44458İstismar yok | Lack of websocket authentication in Lens causes remote code execution when visiting a malicious websitelinux · linux kernel · CWE-287 | Kritik9,6 | — | %0,4 | 10 Oca 2022 |
35İzleyin | CVE-2022-0484İstismar yok | Improper URL Validation causes Mirantis Container Cloud Lens Extension to open external programsmirantis · container cloud lens extension · CWE-20 | Yüksek8,8 | — | %1,0 | 4 Şub 2022 |
35İzleyin | CVE-2022-0270İstismar yok | Improper header sanitization in bored-agent causes escalation of privilegemirantis · bored-agent · CWE-284 | Yüksek8,8 | — | %0,9 | 25 Oca 2022 |
31İzleyin | CVE-2021-23154İstismar yok | Command injection in Lens causes arbitrary shell command execution when malicious custom helm chart configuration providedmirantis · lens · CWE-94 | Yüksek7,8 | — | %0,6 | 10 Oca 2022 |
30İzleyin | CVE-2021-23218İstismar yok | Memory Leak in Mirantis Container Runtime (MCR) running in FIPS mode causes a Denial of Servicemirantis · mirantis container runtime · CWE-401 | Yüksek7,5 | — | %0,9 | 10 Oca 2022 |
- CVE-2021-4445838İzleyin
Lack of websocket authentication in Lens causes remote code execution when visiting a malicious website
KritikCVSS 9,6İstismar yokEPSS %0linux · linux kernel10 Oca 2022
- CVE-2022-048435İzleyin
Improper URL Validation causes Mirantis Container Cloud Lens Extension to open external programs
YüksekCVSS 8,8İstismar yokEPSS %1mirantis · container cloud lens extension4 Şub 2022
- CVE-2022-027035İzleyin
Improper header sanitization in bored-agent causes escalation of privilege
YüksekCVSS 8,8İstismar yokEPSS %1mirantis · bored-agent25 Oca 2022
- CVE-2021-2315431İzleyin
Command injection in Lens causes arbitrary shell command execution when malicious custom helm chart configuration provided
YüksekCVSS 7,8İstismar yokEPSS %1mirantis · lens10 Oca 2022
- CVE-2021-2321830İzleyin
Memory Leak in Mirantis Container Runtime (MCR) running in FIPS mode causes a Denial of Service
YüksekCVSS 7,5İstismar yokEPSS %1mirantis · mirantis container runtime10 Oca 2022