1 results (0.001 seconds)

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 2

14 Aug 2023 — Docker Machine through 0.16.2 allows an attacker, who has control of a worker node, to provide crafted version data, which might potentially trick an administrator into performing an unsafe action (via escape sequence injection), or might have a data size that causes a denial of service to a bastion node. NOTE: This vulnerability only affects products that are no longer supported by the maintainer. Docker Machine hasta 0.16.2 permite a un atacante, que tiene control de un nodo trabajador, proporcionar datos... • https://github.com/docker/machine/releases • CWE-116: Improper Encoding or Escaping of Output •