Page 46 of 3532 results (0.053 seconds)

CVSS: 8.8EPSS: 0%CPEs: -EXPL: 0

Insecure permissions in chaos-mesh v2.6.3 allows attackers to access sensitive data and escalate privileges by obtaining the service account's token. • https://gist.github.com/HouqiyuA/f06d1fa07b5287b862c1e0b288f301e5 • CWE-278: Insecure Preserved Inherited Permissions •

CVSS: 9.8EPSS: 0%CPEs: -EXPL: 0

Insecure permissions in volcano v1.8.2 allows attackers to access sensitive data and escalate privileges by obtaining the service account's token. • https://gist.github.com/HouqiyuA/a0e05a26ecc80bd970ac4649faecc930 • CWE-1259: Improper Restriction of Security Token Assignment •

CVSS: 7.2EPSS: 0%CPEs: -EXPL: 0

Insecure permissions in cert-manager v1.14.4 allows attackers to access sensitive data and escalate privileges by obtaining the service account's token. • https://gist.github.com/HouqiyuA/27879a6366a65fcd5f6c6fcbcf68d8e3 • CWE-284: Improper Access Control •

CVSS: 8.8EPSS: 0%CPEs: 1EXPL: 0

Insecure permissions in logging-operator v4.6.0 allows attackers to access sensitive data and escalate privileges by obtaining the service account's token. • https://gist.github.com/HouqiyuA/f972d1c152f3b8127af01206f7c2af0d • CWE-276: Incorrect Default Permissions •

CVSS: 9.8EPSS: 0%CPEs: -EXPL: 1

Insecure permissions in contour v1.28.3 allows attackers to access sensitive data and escalate privileges by obtaining the service account's token. • https://github.com/Abdurahmon3236/CVE-2024-36539 https://gist.github.com/HouqiyuA/c92f9ec979653dceeea947afd0b47a80 • CWE-277: Insecure Inherited Permissions •