Lucene search

K
githubexploit300F28BA-6965-5E27-9B09-9205520C4895
HistoryJun 11, 2024 - 2:19 p.m.

Exploit for Embedded Malicious Code in Tukaani Xz

2024-06-1114:19:17
59
tukaani xz
cve-2024-3094
k8s cluster
embedded malicious code
vulnerable pod
security context
execute commands
shutdown host
daemonset
port forward
access control
go installation
deployment
connection refused
container image
liblzma.so.5.6.0.patch
references.

10 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

7.5 High

AI Score

Confidence

Low

0.133 Low

EPSS

Percentile

95.6%

CVE-2024-3094

Basic POC to test CVE-2024-3094 vulnerability in…

This is an article that belongs to githubexploit private collection.
Please sign in to get more Information.

10 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

7.5 High

AI Score

Confidence

Low

0.133 Low

EPSS

Percentile

95.6%