Lucene search

K
nvd[email protected]NVD:CVE-2014-3674
HistoryNov 13, 2014 - 9:32 p.m.

CVE-2014-3674

2014-11-1321:32:03
CWE-264
web.nvd.nist.gov
5

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.7

Confidence

Low

EPSS

0.004

Percentile

74.5%

Red Hat OpenShift Enterprise before 2.2 does not properly restrict access to gears, which allows remote attackers to access the network resources of arbitrary gears via unspecified vectors.

Affected configurations

Nvd
Node
redhatopenshiftRange2.1.8enterprise
OR
redhatopenshiftMatch2.0
OR
redhatopenshiftMatch2.0.1enterprise
OR
redhatopenshiftMatch2.0.2enterprise
OR
redhatopenshiftMatch2.0.3enterprise
OR
redhatopenshiftMatch2.0.4enterprise
OR
redhatopenshiftMatch2.0.5enterprise
OR
redhatopenshiftMatch2.0.6enterprise
OR
redhatopenshiftMatch2.1enterprise
OR
redhatopenshiftMatch2.1.1enterprise
OR
redhatopenshiftMatch2.1.2enterprise
OR
redhatopenshiftMatch2.1.3enterprise
OR
redhatopenshiftMatch2.1.4enterprise
OR
redhatopenshiftMatch2.1.5enterprise
OR
redhatopenshiftMatch2.1.6enterprise
OR
redhatopenshiftMatch2.1.7enterprise
VendorProductVersionCPE
redhatopenshift*cpe:2.3:a:redhat:openshift:*:*:*:*:enterprise:*:*:*
redhatopenshift2.0cpe:2.3:a:redhat:openshift:2.0:*:*:*:*:*:*:*
redhatopenshift2.0.1cpe:2.3:a:redhat:openshift:2.0.1:*:enterprise:*:*:*:*:*
redhatopenshift2.0.2cpe:2.3:a:redhat:openshift:2.0.2:*:enterprise:*:*:*:*:*
redhatopenshift2.0.3cpe:2.3:a:redhat:openshift:2.0.3:*:enterprise:*:*:*:*:*
redhatopenshift2.0.4cpe:2.3:a:redhat:openshift:2.0.4:*:enterprise:*:*:*:*:*
redhatopenshift2.0.5cpe:2.3:a:redhat:openshift:2.0.5:*:enterprise:*:*:*:*:*
redhatopenshift2.0.6cpe:2.3:a:redhat:openshift:2.0.6:*:*:*:enterprise:*:*:*
redhatopenshift2.1cpe:2.3:a:redhat:openshift:2.1:*:*:*:enterprise:*:*:*
redhatopenshift2.1.1cpe:2.3:a:redhat:openshift:2.1.1:*:*:*:enterprise:*:*:*
Rows per page:
1-10 of 161

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.7

Confidence

Low

EPSS

0.004

Percentile

74.5%

Related for NVD:CVE-2014-3674